ZyXEL Communications ZYWALL 1050 - V2.00 EDITION 1 User Manual page 115

Internet security gateway
Table of Contents

Advertisement

When you create a zone, the ZyWALL does not create any firewall rules, assign an IDP
profile, or configure remote management for the new zone.
MENU ITEM(S)
PREREQUISITES
WHERE USED
Example: For example, to create the DMZ-2 zone and add ge5 as in the network topology
example, click Network > Zone and then the Add icon.
Device HA
Use device HA to create redundant backup gateways. The ZyWALL runs VRRP v2. You can
only set up device HA with other ZyWALLs of the same model running the same firmware
version.
MENU ITEM(S)
PREREQUISITES
Example: See
DDNS
Dynamic DNS maps a domain name to a dynamic IP address. The ZyWALL helps maintain
this mapping.
MENU ITEM(S)
PREREQUISITES
Policy Routes
Use policy routes to control the routing of packets through the ZyWALL's interfaces, trunks,
and VPN connections. You also use policy routes for bandwidth management (out of the
ZyWALL), port triggering, and general NAT on the source address. You have to set up the
criteria, next-hops, and NAT settings in other screens first.
MENU ITEM(S)
PREREQUISITES
Example: You have an FTP server connected to ge 4 (in the DMZ zone). You want to limit
the amount of FTP traffic that goes out from the FTP server through your WAN connection.
1 Create an address object for the FTP server (Object > Address).
2 Click Network > Routing > Policy Route to go to the policy route configuration screen.
Add a policy route.
3 Name the policy route.
4 Select the interface that the traffic comes in through (ge4 in this example).
5 Select the FTP server's address as the source address.
6 You don't need to specify the destination address or the schedule.
ZyWALL 1050 User's Guide
Network > Zone
Interfaces, IPSec VPN, SSL VPN
Firewall, IDP, remote management, anti-virus, ADP, application patrol
Device HA
Interfaces (with a static IP address), to-ZyWALL firewall
Chapter 6 on page
123.
Network > DDNS
Interfaces
Network > Routing > Policy Route
Criteria: users, user groups, interfaces (incoming), IPSec VPN (incoming),
addresses (source, destination), address groups (source, destination),
schedules, services, service groups
Next-hop: addresses (HOST gateway), IPSec VPN, SSL VPN, trunks, interfaces
NAT: addresses (translated address), services and service groups (port
triggering)
Chapter 5 Configuration Basics
115

Advertisement

Table of Contents
loading

This manual is also suitable for:

Zywall 1050

Table of Contents