ZyXEL 35 Guia Do Utilizador

Página de 335
 
 
ZyWALL 35 Support Notes 
 
 
All contents copyright (c) 2006 ZyXEL Communications Corporation.   
147
9. 
After configuring VPN settings on the local ZyWALL 2 Plus, you must also create a VPN 
tunnel on the remote VPN gateway to connect from the central office to the ZyWALL 2 Plus 
in the branch office. If you are using ZyWALL 70 or ZyWALL 35 as the remote VPN 
gateway, you also get the redundant WAN/VPN feature. In this case, enter 0.0.0.0 in the My 
IP Address field to set the system to automatically detect the IP address of the active WAN 
interface. Thus if the primary WAN interface is down, the My Address field is the IP address 
of the secondary WAN interface. 
 
 
Access control and security VPN connection (Security policy enforcement IPSec) 
 
Setup ZyWALL VPN with access control - Firewall
 
Setup ZyWALL VPN with security policy enofrcement – AV/IDP/AS
 
Setup ZyWALL VPN with web filtering rule – Content Filter
 
 
Normally, the traffic transmitted between VPN tunnel is treated as security connection due on multi 
authentication and encryption methods. Thus, the security gateway won’t inspect the VPN traffic because 
the traffic sending with cipher text format not in plaintext. The enhanced algorithm we adopted is 
ZyWALL can inspect the VPN packet before encrypt or after decrypt the packet sending to or receiving 
from VPN tunnel.