ZyXEL Communications FMG3024-D10A Series User Manual page 170

Gigabit active fiber voip iad
Hide thumbs Also See for FMG3024-D10A Series:
Table of Contents

Advertisement

Chapter 17 VPN
This screen contains the following fields:
Table 51 IPSec VPN: Add
LABEL
IPSEC Setup
Active
NAT Traversal
Tunnel Name
Mode
Local
Local Address
Type
IP Address
Start
End/Subnet
Mask
Remote
Remote
Address Type
IP Address
Start
End/Subnet
Mask
Address Information
WAN Interface Select the interface for the VPN gateway.
My IP Address
Secure
Gateway
Address
Local ID
170
DESCRIPTION
Select Active to activate this VPN policy.
Select this if any of these conditions are satisfied.
• This IKE SA might be used to negotiate IPSec SAs that use ESP as the active
protocol.
There are one or more NAT routers between the Device and remote IPSec
router, and these routers do not support IPSec pass-thru or a similar feature.
The remote IPSec router must also enable NAT traversal, and the NAT routers
have to forward packets with UDP port 500 and UDP 4500 headers unchanged.
Enter the name of the VPN connection.
Select the encapsulation mode. When net-net is selected, the connection will
operate in tunnel mode.
Select Single to have only one local LAN IP address use the VPN tunnel. Select
Subnet to specify local LAN IP addresses by their subnet mask.
If Single is selected, enter a (static) IP address on the LAN behind your Device.
If Subnet is selected, specify IP addresses on a network by their subnet mask
by entering a (static) IP address on the LAN behind your Device. Then enter the
subnet mask to identify the network address.
If Subnet is selected, enter the subnet mask to identify the network address.
Select Single to have only one remote LAN IP address use the VPN tunnel.
Select Subnet to specify remote LAN IP addresses by their subnet mask.
If Single is selected, enter a (static) IP address on the LAN behind the remote
IPSec's router.
If Subnet is selected, specify IP addresses on a network by their subnet mask
by entering a (static) IP address on the LAN behind the remote IPSec's router.
Then enter the subnet mask to identify the network address.
If Subnet is selected, enter the subnet mask to identify the network address.
Enter the IP address of the Device in the IKE SA.
Enter the IP address of the remote IPSec router in the IKE SA.
Select IP to identify the Device by its IP address.
Select DNS to identify this Device by a domain name.
Select E-mail to identify this Device by an e-mail address.
FMG3024-D10A / FMG3025-D10A Series User's Guide

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Fmg3025-d10a series

Table of Contents