18.13 VPN SA Monitor
In the web configurator, click SECURITY > VPN > SA Monitor. Use this screen to display
and manage active VPN connections.
A Security Association (SA) is the group of security settings related to a specific VPN tunnel.
This screen displays active VPN connections. Use Refresh to display active VPN
connections.
Figure 218 SECURITY > VPN > SA Monitor
The following table describes the labels in this screen.
Table 108 SECURITY > VPN > SA Monitor
LABEL
#
Name
Local Network
Remote Network
Encapsulation
IPSec Algorithm
Refresh
Disconnect
18.14 VPN Global Setting
Click SECURITY > VPN > Global Setting to open the VPN Global Setting screen. Use this
screen to change settings that apply to all of your VPN tunnels.
18.14.1 Local and Remote IP Address Conflict Resolution
Normally, you do not configure your local VPN policy rule's IP addresses to overlap with the
remote VPN policy rule's IP addresses (see
usually would not configure both with 192.168.1.0. However, overlapping local and remote
network IP addresses can occur with dynamic VPN rules or IP alias.
ZyWALL 5/35/70 Series User's Guide
DESCRIPTION
This is the security association index number.
This field displays the identification name for this VPN policy.
This field displays the IP address of the computer using the VPN IPSec feature of
your ZyWALL.
This field displays IP address (in a range) of computers on the remote network
behind the remote IPSec router.
This field displays Tunnel or Transport mode.
This field displays the security protocols used for an SA.
Both AH and ESP increase ZyWALL processing requirements and
communications latency (delay).
Click Refresh to display the current active VPN connection(s).
Select a security association index number that you want to disconnect and then
click Disconnect.
Section 18.6.2 on page
Chapter 18 IPSec VPN
369). For example, you
385