ZyXEL Communications wireless n gigbit router zyxel Network Router User Manual


 
Chapter 15 IPSec VPN
NBG-460N User’s Guide
202
Remote Policy Remote IP addresses must be static and correspond to the remote
IPSec router's configured local IP addresses. The remote fields do not
apply when the Secure Gateway IP Address field is configured to
0.0.0.0. In this case only the remote IPSec router can initiate the VPN.
Two active SAs cannot have the local and remote IP address(es) both
the same. Two active SAs can have the same local or remote IP
address, but not both. You can configure multiple SAs between the
same local and remote IP addresses, as long as only one is active at
any time.
Remote Address For a single IP address, enter a (static) IP address on the network
behind the remote IPSec router.
For a specific range of IP addresses, enter the beginning (static) IP
address, in a range of computers on the network behind the remote
IPSec router.
To specify IP addresses on a network by their subnet mask, enter a
(static) IP address on the network behind the remote IPSec router.
Remote Address
End /Mask
When the remote IP address is a single address, type it a second time
here.
When the remote IP address is a range, enter the end (static) IP
address, in a range of computers on the network behind the remote
IPSec router.
When the remote IP address is a subnet address, enter a subnet mask
on the network behind the remote IPSec router.
Authentication Method
My IP Address Enter the NBG-460N's static WAN IP address (if it has one) or leave the
field set to 0.0.0.0.
The NBG-460N uses its current WAN IP address (static or dynamic) in
setting up the VPN tunnel if you leave this field as 0.0.0.0. If the WAN
connection goes down, the NBG-460N uses the dial backup IP address
for the VPN tunnel when using dial backup or the LAN IP address when
using traffic redirect.
Otherwise, you can enter one of the dynamic domain names that you
have configured (in the DDNS screen) to have the NBG-460N use that
dynamic domain name's IP address.
The VPN tunnel has to be rebuilt if My IP Address changes after
setup.
Local ID Type Select IP to identify this NBG-460N by its IP address.
Select Domain Name to identify this NBG-460N by a domain name.
Select E-mail to identify this NBG-460N by an e-mail address.
Table 68 Security > VPN > General > Rule Setup: IKE (Basic) (continued)
LABEL DESCRIPTION