ZyXEL Communications ZYWALL USG 1000 Support Notes page 119

Internet security appliance
Hide thumbs Also See for ZYWALL USG 1000:
Table of Contents

Advertisement

ZyWALL USG 1000 Support Notes
The CLI commands for application:
Address Object:
[0] address-object wholerange 0.0.0.0-255.255.255.255
[0] address-object VPN_LAN_SUBNET 192.168.1.0 255.255.255.0
[0] address-object LAN_SUBNET 192.168.2.0 255.255.255.0
VPN Gateway:
[0] isakmp policy zw70
[1] mode main
[2] transform-set des-md5
[3] lifetime 86400
[4] no natt
[5] dpd
[6] local-ip interface ge2
[7] peer-ip 172.23.23.1 0.0.0.0
[8] authentication pre-share
[9] keystring 123456789
[10] local-id type ip 0.0.0.0
[11] peer-id type any
[12] xauth type server default deactivate
[13] group1
[14] exit
VPN Connection:
[0] crypto map zw70tunnel
[1] ipsec-isakmp zw70
[2] encapsulation tunnel
[3] transform-set esp-des-sha
[4] set security-association lifetime seconds 86400
[5] set pfs none
[6] no policy-enforcement
[7] local-policy wholerange
[8] remote-policy VPN_LAN_SUBNET
[9] no nail-up
119
All contents copyright (c) 2007 ZyXEL Communications Corporation.

Advertisement

Table of Contents
loading

Table of Contents