Chapter 6 Configuration Basics

6.5.15 IPSec VPN

Use IPSec VPN to provide secure communication between two sites over the Internet or any insecure network that uses TCP/IP for communication. The ZyWALL also offers hub-and-spoke VPN.

MENU ITEM(S)

Configuration > VPN > IPSec VPN; you can also use the Quick

Setup VPN Setup wizard.

Interfaces, certificates (authentication), authentication methods

PREREQUISITES (extended authentication), addresses (local network, remote network, NAT), to-ZyWALL firewall, firewall

WHERE USED Policy routes, zones

Example: See Chapter 7 on page 109.

6.5.16 SSL VPN

Use SSL VPN to give remote users secure network access.

MENU ITEM(S) Configuration > VPN > SSL VPN

Interfaces, SSL application, users, user groups, addresses (network

PREREQUISITES list, IP pool for assigning to clients, DNS and WINS server addresses), to-ZyWALL firewall, firewall

WHERE USED Policy routes, zones

Example: See Chapter 7 on page 109.

6.5.17 Application Patrol

Use application patrol to control which individuals can use which services through the ZyWALL (and when they can do so). You can also specify allowed amounts of bandwidth and priorities. You must subscribe to use application patrol. You can subscribe using the Configuration > Licensing > Registration screens or one of the wizards.

MENU ITEM(S) Configuration > AppPatrol

Registration, zones, Schedules, users, user groups, addresses

PREREQUISITES (source, destination), address groups (source, destination). These are

only used as criteria in exceptions and conditions.

Example: Suppose you want to allow vice president Bob to use BitTorrent and block everyone else from using it.

1Create a user account for Bob (User/Group).

102

 

ZyWALL USG 50 User’s Guide