ZyWALL 5/35/70 Series User’s Guide

You may want to configure a VPN rule that uses manual key management if you are having problems with IKE key management.

Refer to Table 100 on page 313 for descriptions of the icons used in this screen.

Figure 154 VPN Rules (Manual)

The following table describes the labels in this screen.

Table 104 VPN Rules (Manual)

LABEL

DESCRIPTION

 

 

#

This is the VPN policy index number.

 

 

Name

This field displays the identification name for this VPN policy.

 

 

Active

This field displays whether the VPN policy is active or not. A Yes signifies that this

 

VPN policy is active. No signifies that this VPN policy is not active.

Local Network

This is the IP address(es) of computer(s) on your local network behind your

 

ZyWALL.

 

The same (static) IP address is displayed twice when the Local Network Address

 

Type field in the VPN - Manual Key - Edit screen is configured to Single Address.

 

The beginning and ending (static) IP addresses, in a range of computers are

 

displayed when the Local Network Address Type field in the VPN - Manual Key -

 

Edit screen is configured to Range Address.

 

A (static) IP address and a subnet mask are displayed when the Local Network

 

Address Type field in the VPN - Manual Key - Edit screen is configured to Subnet

 

Address.

Remote Network

This is the IP address(es) of computer(s) on the remote network behind the remote

 

IPSec router.

 

This field displays N/A when the Remote Gateway Address field displays 0.0.0.0.

 

In this case only the remote IPSec router can initiate the VPN.

 

The same (static) IP address is displayed twice when the Remote Network

 

Address Type field in the VPN - Manual Key - Edit screen is configured to Single

 

Address.

 

The beginning and ending (static) IP addresses, in a range of computers are

 

displayed when the Remote Network Address Type field in the VPN - Manual

 

Key - Edit screen is configured to Range Address.

 

A (static) IP address and a subnet mask are displayed when the Remote Network

 

Address Type field in the VPN - Manual Key - Edit screen is configured to Subnet

 

Address.

Encap.

This field displays Tunnel or Transport mode (Tunnel is the default selection).

 

 

Chapter 19 VPN Screens

326