ZyXEL Communications wireless n gigbit router zyxel Manual Do Utilizador

Página de 384
 Chapter 15 IPSec VPN
NBG-460N User’s Guide
219
15.6  Technical Reference
The following section contains additional technical information about the NBG-
460N features described in this chapter.
15.6.1  VPN and Remote Management
You can allow someone to use a service (like Telnet or HTTP) through a VPN 
tunnel to manage the NBG-460N. One of the NBG-460N’s ports must be part of 
the VPN rule’s local network. This can be the NBG-460N’s LAN port if you do not 
want to allow remote management on the WAN port. You also have to configure 
remote management (Management > Remote MGMT) to allow management 
access for the service through the specific port. 
In the following example, the VPN rule’s local network (A) includes the NBG-
460N’s LAN IP address of 192.168.1.7. Someone in the remote network (B) can 
use a service (like HTTP for example) through the VPN tunnel to access the NBG-
460N’s LAN interface. Remote management must also be configured to allow HTTP 
access on the NBG-460N’s LAN interface.
Figure 136   VPN for Remote Management Example
15.6.2  IKE SA Proposal
The IKE SA proposal is used to identify the encryption algorithm, authentication 
algorithm, and Diffie-Hellman (DH) key group that the NBG-460N and remote