ZyXEL Communications ZYWALL USG 2000 Support Notes page 127

Unified security gateway
Hide thumbs Also See for ZYWALL USG 2000:
Table of Contents

Advertisement

(known as a attack) and the traffic coming from DMZ to LAN (normal traffic) will be treated
as an attack.
Inbound Traffic vs. Outbound Traffic
I
n
i
t
i
a
t
o
r
 
I
n
i
t
i
a
t
o
r
 
F
r
o
m
F
r
o
m
Z
o
n
e
Z
o
n
A connection has an outbound and inbound packet flow. The ZyWALL controls the bandwidth
of traffic of both flows as it is going out through an interface or VPN tunnel.
‧ Outbound traffic flows from the connection initiator to the connection responder.
‧ Inbound traffic flows from the connection responder to the connection initiator.
For example, a LAN to WAN connection is initiated from the LAN and goes to the WAN.
‧ Outbound traffic goes from a LAN zone device to a WAN zone device. Bandwidth
management is applied before sending the packets out a WAN zone interface on the ZyWALL.
‧ Inbound traffic comes back from the WAN zone device to the LAN zone device. Bandwidth
management is applied before sending the traffic out a LAN zone interface.
Bandwidth management is very useful when applications are competing for limited bandwidth.
Here is an example of what the rules need to accomplish. See the following sections for more
details.
For proper network usage, the IT manager requires the network administrator to configure
ZyWALL AppPatrol according to company IT policy as:
Boss: Can use any internet application without access control and bandwidth limitation.
Sales: Can use instant messaging application (MSN) for text message and file transfer
All contents copyright (c) 2008 ZyXEL Communications Corporation.
I
n
b
o
u
n
d
 
B
W
M
 
I
n
b
o
u
n
d
 
B
W
M
 
 
 
 
e
 
C
C
'
O
'
O
ZyWALL USG 2000 Support Notes
'
I
n
b
o
u
n
d
'  
T
r
a
f
f
i
c  
'
I
n
b
o
u
n
d
'
T
r
a
f
f
i
c
o
n
n
e
c
t
i
o
n
 
(
S
e
t
u
p
)
 
o
n
n
e
c
t
i
o
n
 
(
S
e
t
u
p
)
 
D
i
r
e
c
t
i
o
n
 
D
i
r
e
c
t
i
o
n
 
L AN
W AN-1
W AN-2
DMZ 10/100
10/100
10/100
10 /100
1
2
3
4
DIAL BACKUP
CONSO LE
L AN
W AN-1
W AN-2
DMZ 10/100
PWR A CT
RESET
10/100
10/100
10 /100
1
2
3
4
DIAL BACKUP
CONSO LE
S Y S
C ARD
PWR A CT
RESET
ZyWALL 70
S Y S
C ARD
INT ERNET SECUR IT Y APPLIANC E
ZyWALL 70
INT ERNET SECUR IT Y APPLIANC E
u
t
b
o
u
n
d
'  
T
r
a
f
f
i
c  
u
t
b
o
u
n
d
'
T
r
a
f
f
i
c
T
o
Z
o
n
e
T
o
Z
o
n
 
 
O
u
t
b
o
u
n
d
 
B
W
M
 
O
u
t
b
o
u
n
d
 
B
W
M
 
 
e
 
C
o
n
n
e
c
t
i
o
n
 
 
C
o
n
n
e
c
t
i
o
n
 
 
R
e
s
p
o
n
d
e
r
 
R
e
s
p
o
n
d
e
r
 
127

Advertisement

Table of Contents
loading

Table of Contents