Chapter 14 IPSec VPN

14.9 Network Policy Move

Click the move () icon in the VPN Rules (IKE) screen to display the VPN Rules (IKE): Network Policy Move screen.

A VPN (Virtual Private Network) tunnel gives you a secure connection to another computer or network. Each VPN tunnel uses a single gateway policy and one or more network policies.

The gateway policy contains the IKE SA settings. It identifies the IPSec routers at either end of a VPN tunnel.

The network policy contains the IPSec SA settings. It specifies which devices (behind the IPSec routers) can use the VPN tunnel.

Use this screen to associate a network policy to a gateway policy.

Figure 183 SECURITY > VPN > VPN Rules (IKE) > Move Network Policy

The following table describes the labels in this screen.

Table 70 SECURITY > VPN > VPN Rules (IKE) > Move Network Policy

LABEL

DESCRIPTION

Network Policy

The following fields display the general network settings of this VPN policy.

Information

 

 

 

Name

This field displays the policy name.

 

 

Local Network

This field displays one or a range of IP address(es) of the computer(s) behind the

 

ZyWALL.

 

 

Remote Network

This field displays one or a range of IP address(es) of the remote network behind

 

the remote IPsec router.

 

 

Gateway Policy

 

Information

 

 

 

Gateway Policy

Select the name of a VPN rule (or gateway policy) to which you want to associate

 

this VPN network policy.

 

If you do not want to associate a network policy to any gateway policy, select

 

Recycle Bin from the drop-down list box. The Recycle Bin gateway policy is a

 

virtual placeholder for any network policy(ies) without an associated gateway

 

policy. When there is a network policy in Recycle Bin, the Recycle Bin gateway

 

policy automatically displays in the VPN Rules (IKE) screen.

 

 

Apply

Click Apply to save the changes.

 

 

Cancel

Click Cancel to discard all changes and return to the main VPN screen.

 

 

280

 

ZyWALL 2 Plus User’s Guide