Chapter 5 Configuration Basics

PREREQUISITES

Interfaces

WHERE USED

Policy routes

 

 

Example: See Chapter 6 on page 125.

5.4.4 IPSec VPN

Use IPSec VPN to provide secure communication between two sites over the Internet or any insecure network that uses TCP/IP for communication. The ZyWALL also offers hub-and- spoke VPN.

MENU ITEM(S)

VPN > IPSec VPN; you can also use the VPN Setup Wizard, which handles

most of the prerequisites for you.

 

 

Interfaces, certificates (authentication), authentication methods (extended

PREREQUISITES

authentication), addresses (local network, remote network, NAT), to-ZyWALL

 

firewall, firewall

WHERE USED

Policy routes, zones, L2TP VPN

 

 

Example: See Chapter 6 on page 125.

5.4.5 SSL VPN

Use SSL VPN to provide secure network access to remote users.

MENU ITEM(S)

VPN > SSL VPN

 

Interfaces, SSL application, users, user groups, addresses (network list, IP pool

PREREQUISITES

for assigning to clients, DNS and WINS server addresses), to-ZyWALL firewall,

 

firewall

WHERE USED

Policy routes, zones

 

 

Example: See Chapter 6 on page 125.

5.4.6 L2TP VPN

Use L2TP VPN to let remote users use the L2TP and IPSec client software included with their computers’ operating systems to securely connect to the network behind the ZyWALL.

MENU ITEM(S)

VPN > L2TP VPN

 

Interfaces, IPSec VPN connection, certificates (authentication), authentication

PREREQUISITES

methods (extended authentication), addresses (local network, remote network,

NAT, IP pool for assigning to clients, DNS and WINS server addresses), to-

 

ZyWALL firewall, firewall

WHERE USED

The IPSec VPN connection used for L2TP VPN can be used in policy routes and

zones

 

 

 

Example: See Chapter 26 on page 351.

5.4.7 Zones

See Section 5.3 on page 112 for background information. A zone is a group of interfaces and VPN tunnels. The ZyWALL uses zones, not interfaces, in many security settings, such as firewall rules and remote management.

116

 

ZyWALL USG 1000 User’s Guide