Chapter 6 Tutorials

Figure 60 VPN > IPSec VPN > VPN Gateway > Add

6.2.3 Set up the VPN Connection

The VPN connection manages the IPSec SA. You have to set up the address objects for the local network and remote network before you can set up the VPN connection.

1Click Object > Address > Address. Click the Add icon.

2Give the new address object a name (“VPN_LOCAL_RANGE”), change the Address Type to RANGE, and set up the rest of the fields to 192.168.1.33 and 192.168.1.232. Click OK.

Figure 61 Object > Address > Address > Add

3Repeat the process to create a new address object for the remote network (“VPN_REMOTE_SUBNET”, 192.168.1.0/24).

4Click VPN > IPSec VPN > VPN Connection. Click the Add icon.

5Give the VPN connection a name (“VPN_CONN_EXAMPLE”), and select the VPN gateway (Section 6.2.2 on page 132) in the VPN Gateway section. Use the default proposal settings in this example--ESP, Tunnel encapsulation, DES encryption, and SHA1 authentication--so do not change these settings. In the Policy section, select the address objects for the local and remote networks. Click OK.

 

133

ZyWALL USG 1000 User’s Guide