1.2 Network topology In our example, we will connect TheGreenBow VPN client to the LAN behind the Zyxel ZyWall Router. The VPN client is connected to the Internet by a dialup connection from an ISP. The client will have a virtual IP address in the remote LAN.
Zywall VPN configuration can be achieved with a web browser. Read Zyxel ZyWALL 10 documentation for more information. Once connected to your VPN gateway, click on "VPN" link in the Zyxel ZyWALL 10 VPN configuration interface. Select a VPN connection and click on "Edit": 2.2 ZyWall IKE Mode...
Doc.Ref tgbvpn_cg_ZyWall10_en Doc.version 2.0 – Nov.2004 VPN version 2.5x 2.3 ZyWall Phase 2 IDs The settings "Local" and "Remote" are in fact Phase 2 IDs. In Local Address Type, you must select "Subnet Address" and fill the field “Starting IP Address” with the IP addresses of your LAN. 2.4 ZyWall Phase 1 IDs Phase 1 IDs are set in the following view of the configuration interface.
Doc.Ref tgbvpn_cg_ZyWall10_en Doc.version 2.0 – Nov.2004 VPN version 2.5x 2.6 ZyWall Authentication and encryption algorithms For Phase 1, select the algorithm you want. DH1 is also known as Diffie-Hellman 768 and DH2 as Diffie-Hellman 1024. For Phase 2, do not forget to select "ESP" as active protocol. Click on «...
In the "Interface" field, you can select a star ("*"), if the client host receive a dynamic IP Address from an ISP for example. The "Remote Address" field value is the Zyxel ZyWALL VPN router public IP address or DNS address. By clicking in "Advanced" button, you can setup "Phase 1 Ids" and "Aggressive Mode".
Phase2 Configuration 3.3 Open the IPSec VPN tunnels Once both Zyxel Zywall VPN router and TheGreenBow IPSec VPN Client have been configured accordingly, you are ready to open VPN tunnels. First make sure you enable your firewall with IPSec traffic.
Doc.Ref tgbvpn_cg_ZyWall10_en Doc.version 2.0 – Nov.2004 VPN version 2.5x 4.5 « NO PROPOSAL CHOSEN » error 115911 Default (SA ZyWALL-P1) SEND phase 1 Main Mode [SA][VID] 115913 Default (SA ZyWALL-P1) RECV phase 1 Main Mode [SA][VID] 115913 Default (SA ZyWALL-P1) SEND phase 1 Main Mode [KEY][NONCE] 115915 Default (SA ZyWALL-P1) RECV phase 1 Main Mode [KEY][NONCE]...
Page 11
Doc.Ref tgbvpn_cg_ZyWall10_en Doc.version 2.0 – Nov.2004 VPN version 2.5x • Check your ISP support ESP • If you still cannot ping, follow ICMP traffic on VPN server LAN interface and on LAN computer interface (with Ethereal for example). You will have an indication that encryption works. •...
Need help?
Do you have a question about the ZYWALL 10 - GREENBOW VPN CLIENT and is the answer not in the manual?
Questions and answers