ZyXEL Communications 2WE Network Card User Manual


 
ZyWALL 2 and ZyWALL 2WE
27-22 VPN/IPSec Setup
Table 27-9 Manual IKE VPN Rule Setup
LABEL DESCRIPTION
IPSec Keying Mode
Select IKE or Manual from the drop-down list box. IKE is the preferred choice as the
key is generated automatically; Manual is useful for troubleshooting.
Make sure the remote gateway has the same configuration in this field.
Protocol Number
Enter 1 for ICMP, 6 for TCP, 17 for UDP, etc. 0 is the default and signifies any
protocol.
Local Address
This is the IP address of the computer for which you are configuring the VPN
connection. This IP address must correspond to the remote secure gateway's
configured remote IP address in order for the remote secure gateway to initiate the
VPN connection.
Local Port Start
0 is the default and signifies any port. Type a port number from 0 to 65535. Some of
the most common IP ports are: 21, FTP; 53, DNS; 23, Telnet; 80, HTTP; 25, SMTP;
110, POP3
Local Port End
Enter a port number in this field to define a port range. This port number must be
greater than that specified in the previous field (or equal to it for configuring an
individual port).
Remote Address Start
Enter the beginning (static) IP address, in a range of computers behind the remote
secure gateway. This address should be specific to the remote computer using the
VPN tunnel. If you wish to configure the tunnel for a single IP address, enter it in this
field and again in the Remote Address End field.
Remote Address
End/Mask
Enter the end (static) IP address, in a range of computers on behind the remote
secure gateway. This address should be specific to the remote computer using the
VPN tunnel. If you wish to configure the tunnel for a single IP address, enter it in both
the Remote Address Start field and here.
Remote Port Start
0 is the default and signifies any port. Type a port number from 0 to 65535. Some of
the most common IP ports are: 21, FTP; 53, DNS; 23, Telnet; 80, HTTP; 25, SMTP;
110, POP3
Remote Port End
Enter a port number in this field to define a port range. This port number must be
greater than that specified in the previous field (or equal to it for configuring an
individual port).