Index

basic troubleshooting 903 certificates 486 connections 470 connectivity check 476 Default_L2TP_VPN_Connection 544

Default_L2TP_VPN_Connection example 185 Default_L2TP_VPN_GW 544 Default_L2TP_VPN_GW example 183 encapsulation 475

encryption 476 ESP 475

established in two phases 468 fragmentation 471

L2TP VPN 543 local network 467 local policy 475 manual key 474 NetBIOS 474 peer 467

Perfect Forward Secrecy 476 PFS 476

phase 2 settings 475 policy enforcement 475 remote access 474 remote IPSec router 467 remote network 467 remote policy 475 replay detection 474 SA life time 475

SA monitor 258

SA see also IPSec SA 502 see also VPN

site-to-site with dynamic peer 474 static site-to-site 474

transport encapsulation 475 tunnel encapsulation 475 VPN gateway 470

IPSec SA

active protocol 502 and firewall 452, 904

and to-ZyWALL firewall 904 authentication algorithms 496, 497 authentication key (manual keys) 504 destination NAT for inbound traffic 506 encapsulation 502

encryption algorithms 497 encryption key (manual keys) 504 local policy 502

manual keys 504

NAT for inbound traffic 504

NAT for outbound traffic 504 Perfect Forward Secrecy (PFS) 503 proposal 503

remote policy 502 search by name 259 search by policy 259

Security Parameter Index (SPI) (manual keys) 504

see also IPSec see also VPN

source NAT for inbound traffic 505 source NAT for outbound traffic 505 status 258

transport mode 502 tunnel mode 502

when IKE SA is disconnected 502

IPSec VPN

configuration overview 106 hub and spoke 142 prerequisites 105, 106 see also IPSec troubleshooting 903 tutorial 139

where used 106 ISP account

CHAP 789 CHAP/PAP 789 MPPE 789 MSCHAP 789 MSCHAP-V2 789 PAP 789

ISP accounts 787

and PPPoE/PPTP interfaces 305, 787 authentication type 789 encryption method 789

stac compression 790

J

Java 664

permissions 47

JavaScript 47

K

key pairs 765

 

1107

ZyWALL USG 300 User’s Guide