When there is outbound traffic but no inbound traffic, the SA times out automatically after two
minutes. A tunnel with no outbound or inbound traffic is "idle" and does not timeout until the
SA lifetime period expires. See
Device renegotiate an IPSec SA when the SA lifetime expires, even if there is no traffic.
Figure 128 VPN: SA Monitor
The following table describes the fields in this screen.
Table 87 VPN: SA Monitor
LABEL
No
Name
Encapsulation
IPSec Algorithm
Disconnect
Refresh
13.17 Configuring Global Setting
To change your ZyXEL Device's global settings, click VPN and then Global Setting. The
screen appears as shown.
Chapter 13 VPN Screens
Section 13.6 on page 207
DESCRIPTION
This is the security association index number.
This field displays the identification name for this VPN policy.
This field displays Tunnel or Transport mode.
This field displays the security protocol, encryption algorithm, and authentication
algorithm used in each VPN tunnel.
Select one of the security associations, and then click Disconnect to stop that
security association.
Click Refresh to display the current active VPN connection(s).
P-661H/HW Series User's Guide
on keep alive to have the ZyXEL
225