TheGreenBow ZYWALL 10 - GREENBOW VPN CLIENT Configuration Manual

Vpn router

Advertisement

Quick Links

Router:
WebSite:
Contact:
IPSec VPN Router Configuration
TheGreenBow IPSec VPN Client

Configuration Guide

http://www.thegreenbow.com
support@thegreenbow.com
Property of TheGreenBow Sistech SA - © Sistech 2001-2005
Zyxel ZyWall 10
0/12

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the ZYWALL 10 - GREENBOW VPN CLIENT and is the answer not in the manual?

Questions and answers

Summary of Contents for TheGreenBow ZYWALL 10 - GREENBOW VPN CLIENT

  • Page 1: Configuration Guide

    TheGreenBow IPSec VPN Client Configuration Guide Zyxel ZyWall 10 Router: WebSite: http://www.thegreenbow.com Contact: support@thegreenbow.com IPSec VPN Router Configuration Property of TheGreenBow Sistech SA - © Sistech 2001-2005 0/12...
  • Page 2: Table Of Contents

    Doc.Ref tgbvpn_cg_ZyWall10_en Doc.version 2.0 – Nov.2004 VPN version 2.5x Table of contents Introduction ..............................0 Goal of this document ..........................0 Network topology ............................0 ZyWall VPN Configuration ..........................0 ZyWall VPN Configuration interface......................0 ZyWall IKE Mode ............................0 ZyWall Phase 2 IDs...........................
  • Page 3: Introduction

    1.2 Network topology In our example, we will connect TheGreenBow VPN client to the LAN behind the Zyxel ZyWall Router. The VPN client is connected to the Internet by a dialup connection from an ISP. The client will have a virtual IP address in the remote LAN.
  • Page 4: Zywall Vpn Configuration

    Zywall VPN configuration can be achieved with a web browser. Read Zyxel ZyWALL 10 documentation for more information. Once connected to your VPN gateway, click on "VPN" link in the Zyxel ZyWALL 10 VPN configuration interface. Select a VPN connection and click on "Edit": 2.2 ZyWall IKE Mode...
  • Page 5: Zywall Phase 2 Ids

    Doc.Ref tgbvpn_cg_ZyWall10_en Doc.version 2.0 – Nov.2004 VPN version 2.5x 2.3 ZyWall Phase 2 IDs The settings "Local" and "Remote" are in fact Phase 2 IDs. In Local Address Type, you must select "Subnet Address" and fill the field “Starting IP Address” with the IP addresses of your LAN. 2.4 ZyWall Phase 1 IDs Phase 1 IDs are set in the following view of the configuration interface.
  • Page 6: Zywall Authentication And Encryption Algorithms

    Doc.Ref tgbvpn_cg_ZyWall10_en Doc.version 2.0 – Nov.2004 VPN version 2.5x 2.6 ZyWall Authentication and encryption algorithms For Phase 1, select the algorithm you want. DH1 is also known as Diffie-Hellman 768 and DH2 as Diffie-Hellman 1024. For Phase 2, do not forget to select "ESP" as active protocol. Click on «...
  • Page 7: Thegreenbow Ipsec Vpn Client Configuration

    In the "Interface" field, you can select a star ("*"), if the client host receive a dynamic IP Address from an ISP for example. The "Remote Address" field value is the Zyxel ZyWALL VPN router public IP address or DNS address. By clicking in "Advanced" button, you can setup "Phase 1 Ids" and "Aggressive Mode".
  • Page 8: Open The Ipsec Vpn Tunnels

    Phase2 Configuration 3.3 Open the IPSec VPN tunnels Once both Zyxel Zywall VPN router and TheGreenBow IPSec VPN Client have been configured accordingly, you are ready to open VPN tunnels. First make sure you enable your firewall with IPSec traffic.
  • Page 9: Vpn Ipsec Troubleshooting

    Doc.Ref tgbvpn_cg_ZyWall10_en Doc.version 2.0 – Nov.2004 VPN version 2.5x 4 VPN IPSec Troubleshooting 4.1 « PAYLOAD MALFORMED » error 114920 Default (SA ZyWALL-P1) SEND phase 1 Main Mode [SA][VID] 114920 Default (SA ZyWALL-P1) RECV phase 1 Main Mode [NOTIFY] 114920 Default exchange_run: exchange_validate failed 114920 Default dropped message from 195.100.205.114 port 500 due to notification type PAYLOAD_MALFORMED 114920 Default SEND Informational...
  • Page 10: No Proposal Chosen » Error

    Doc.Ref tgbvpn_cg_ZyWall10_en Doc.version 2.0 – Nov.2004 VPN version 2.5x 4.5 « NO PROPOSAL CHOSEN » error 115911 Default (SA ZyWALL-P1) SEND phase 1 Main Mode [SA][VID] 115913 Default (SA ZyWALL-P1) RECV phase 1 Main Mode [SA][VID] 115913 Default (SA ZyWALL-P1) SEND phase 1 Main Mode [KEY][NONCE] 115915 Default (SA ZyWALL-P1) RECV phase 1 Main Mode [KEY][NONCE]...
  • Page 11 Doc.Ref tgbvpn_cg_ZyWall10_en Doc.version 2.0 – Nov.2004 VPN version 2.5x • Check your ISP support ESP • If you still cannot ping, follow ICMP traffic on VPN server LAN interface and on LAN computer interface (with Ethereal for example). You will have an indication that encryption works. •...
  • Page 12: Contacts

    Doc.Ref tgbvpn_cg_ZyWall10_en Doc.version 2.0 – Nov.2004 VPN version 2.5x 5 Contacts News and updates on TheGreenBow web site : http://www.thegreenbow.com Technical support by email at support@thegreenbow.com Sales contacts at +33 1 43 12 39 37 ou by email at info@thegreenbow.com IPSec VPN Router Configuration Property of TheGreenBow Sistech SA - ©...

This manual is also suitable for:

Ipsec vpn client zyxel zywall 10

Table of Contents