Chapter 13 Policy and Static Routes

 

Table 77 Configuration > Network > Routing > Policy Route > Edit (continued)

 

LABEL

DESCRIPTION

 

VPN Tunnel

This field displays when you select VPN Tunnel in the Type field. Select

 

 

a VPN tunnel through which the packets are sent to the remote network

 

 

that is connected to the ZyWALL directly.

 

 

 

 

Auto

This field displays when you select VPN Tunnel in the Type field. Select

 

Destination

this to have the ZyWALL use the local network of the peer router that

 

Address

initiated an incoming dynamic IPSec tunnel as the destination address of

 

 

 

 

the policy.

 

 

Leave this cleared if you want to manually specify the destination

 

 

address.

 

 

 

 

Trunk

This field displays when you select Trunk in the Type field. Select a

 

 

trunk group to have the ZyWALL send the packets via the interfaces in

 

 

the group.

 

 

 

 

Interface

This field displays when you select Interface in the Type field. Select

 

 

an interface to have the ZyWALL send traffic that matches the policy

 

 

route through the specified interface.

 

 

 

 

Auto-

This field displays when you select Interface or Trunk in the Type

 

Disable

field. Select this to have the ZyWALL automatically disable this policy

 

 

route when the next hop’s connection is down.

 

 

 

 

DSCP Marking

 

 

 

 

 

DSCP Marking

Set how the ZyWALL handles the DSCP value of the outgoing packets

 

 

that match this route.

 

 

Select one of the pre-defined DSCP values to apply or select User

 

 

Defined to specify another DSCP value. The “af” choices stand for

 

 

Assured Forwarding. The number following the “af” identifies one of four

 

 

classes and one of three drop preferences. See Assured Forwarding (AF)

 

 

PHB for DiffServ on page 293 for more details.

 

 

Select preserve to have the ZyWALL keep the packets’ original DSCP

 

 

value.

 

 

Select default to have the ZyWALL set the DSCP value of the packets to

 

 

0.

 

 

 

 

User-

Use this field to specify a custom DSCP value.

 

Defined

 

 

DSCP Code

 

 

 

 

 

Address

Use this section to configure NAT for the policy route. This section does

 

Translation

not apply to policy routes that use a VPN tunnel as the next hop.

 

 

 

 

289

ZyWALL USG 50 User’s Guide