ZyXEL Communications wireless n gigbit router zyxel Network Router User Manual


 
Chapter 15 IPSec VPN
NBG-460N User’s Guide
219
15.6 Technical Reference
The following section contains additional technical information about the NBG-
460N features described in this chapter.
15.6.1 VPN and Remote Management
You can allow someone to use a service (like Telnet or HTTP) through a VPN
tunnel to manage the NBG-460N. One of the NBG-460N’s ports must be part of
the VPN rule’s local network. This can be the NBG-460N’s LAN port if you do not
want to allow remote management on the WAN port. You also have to configure
remote management (Management > Remote MGMT) to allow management
access for the service through the specific port.
In the following example, the VPN rule’s local network (A) includes the NBG-
460N’s LAN IP address of 192.168.1.7. Someone in the remote network (B) can
use a service (like HTTP for example) through the VPN tunnel to access the NBG-
460N’s LAN interface. Remote management must also be configured to allow HTTP
access on the NBG-460N’s LAN interface.
Figure 136 VPN for Remote Management Example
15.6.2 IKE SA Proposal
The IKE SA proposal is used to identify the encryption algorithm, authentication
algorithm, and Diffie-Hellman (DH) key group that the NBG-460N and remote