Chapter 18 VPN Screens

Figure 161 Edit VPN Policies

The following table describes the fields in this screen.

Table 109 Edit VPN Policies

LABEL

DESCRIPTION

IPSec Setup

 

 

 

Active

Select this check box to activate this VPN policy. This option determines whether

 

a VPN rule is applied before a packet leaves the firewall.

 

 

Keep Alive

Select either Yes or No from the drop-down list box.

 

Select Yes to have the ZyXEL Device automatically reinitiate the SA after the SA

 

lifetime times out, even if there is no traffic. The remote IPSec router must also

 

have keep alive enabled in order for this feature to work.

 

 

NAT Traversal

This function is available if the VPN protocol is ESP.

 

Select this check box if you want to set up a VPN tunnel when there are NAT

 

routers between the ZyXEL Device and remote IPSec router. The remote IPSec

 

router must also enable NAT traversal, and the NAT routers have to forward UDP

 

port 500 packets to the remote IPSec router behind the NAT router.

 

 

Name

Type up to 32 characters to identify this VPN policy. You may use any character,

 

including spaces, but the ZyXEL Device drops trailing spaces.

 

 

284

 

P-2602HWLNI User’s Guide