ZyXEL Communications P-334WT Support Notes page 40

Hide thumbs Also See for P-334WT:
Table of Contents

Advertisement

Phase 1 ID can be configured in VPN setup menu as following. Note that you can make such configuration in either web configurator or
SMT menu.
13. How to configure P-334WT that supports so that it can cooperate with ZyWALL V3.50 ?
ZyWALL with firmware version V3.50 in prefix can only support phase 1 ID as IP type. And ID checking mechanism is actually bypassed.
So to work smoothly, please apply IP type in P-334WT. The following is an example for your reference.
In this example, we presume that the network environment is as following,
P-334WT (V3.60) is using dynamic IP address, and it have DDNS to register it's current dynamic IP address. ZyWALL (V3.50) is using
static IP adderss, and since it's peer's IP address is dynamic, so the secure gateway is configured in DDNS format.
Old ZyWALL (V3.50)
My IP=212.125.177.2
Secure gateway Addr= P-334WT.dyndns.org
(DDNS name of P-334WT)
Old ZyWALL will use the "P-334WT.dyndns.org" to find the P-334WT's current WAN IP address. And then use it for phase 1 ID content.
14. If I have NAT router between two VPN gateways, and I would like to use IP type as Phase 1 ID, what should I know?
We presume your environment may look like this,
VPN client: 10.1.33.33
NAT router WAN IP: 202.132.154.2
P-334WT WAN: 202.132.154.3
Since the VPN client is behind a NAT router, it must have a private IP address in most case. This may cause the VPN client to send it's
P-334WT (V3.60)
Local ID type = IP
My IP = 0.0.0.0
Peer ID type = IP
Secure gateway Addr= 212.125.177.2

Advertisement

Table of Contents
loading

Table of Contents