ZyXEL Communications ZYWALL USG 1000 Support Notes page 139

Internet security appliance
Hide thumbs Also See for ZYWALL USG 1000:
Table of Contents

Advertisement

2. Configuration on ZyWALL USG-B
(1). LAN/WAN Network Setting
Login ZyWALL USG-A's GUI, go to menu Configuration > Network > Interface. Modify
ge2's(WAN) IP address to 59.124.163.155 with subnet 255.255.255.224 and gateway
59.124.163.129. Secondly, modify ge1's(LAN) IP address to 192.168.2.1 with subnet
255.255.255.0 and configure it as a DHCP server with the IP poor starting address and pool
size accordingly. Besides, also input the proper DNS server which will apply to LAN PCs
automatically. (By default, the first DNS server is configured as "from ISP". Since we
configure the static IP address for ge2(WAN), it won't automatically get any DNS setting from
ISP. So we have to change it to "Custom Defined" and give it a proper DNS server's IP
address.)
(2). Dynamic VPN Setting with SNAT
Step1. Create Address Objects for further configuration.
1. Go to menu Configuration > Network > Object > Address
2. Create a new address object for local network by clicking '+' icon
Name: Local_192_168_2
Subnet, 192.168.2.0/255.255.255.0
3. Create another one for remote network
Name: Remote_192_168_3
Subnet, 192.168.3.0/255.255.255.0
4. Create another one for the network behind ZyWALL USG-B performing SNAT
Name: Local_192_168_31
Subnet, 192.168.31.0/255.255.255.0
5. Create another one for dynamic remote network.
Name: Remote_ANY
Subnet, 0.0.0.0/0.0.0.0
6. Create still one more for the IP domain interface on ES-4024A's VLAN3.
Name: HOST_192_168_2_254
Host, 192.168.2.254/255.255.255.255
CLI commands for reference:
[0] address-object Local_192_168_2 192.168.2.0 255.255.255.0
All contents copyright (c) 2007 ZyXEL Communications Corporation.
ZyWALL USG 1000 Support Notes
139

Advertisement

Table of Contents
loading

Table of Contents