Chapter 6 Tutorials

Figure 62 VPN > IPSec VPN > VPN Connection > add

6.2.4 Set up the Policy Route for the VPN Tunnel

You should create a new policy route to use the VPN tunnel. This policy route will only use the existing address objects, so you do not have to create any additional objects first.

1Click Network > Routing > Policy Route. You want this policy route to have higher priority than the default policy route for the trunk, so click the Add icon at the top of the column, not the one next to the existing policy route.

Figure 63 Network > Routing > Policy Route

2Configure the policy route as shown next. This policy route applies to traffic from ge1. The source address and destination address must be the same ones represented by the address objects that you used in the VPN connection. The next-hop is the VPN connection that you created. Click OK.

134

 

ZyWALL USG 1000 User’s Guide