Chapter 13 IPSec
P-660HN-51 User’s Guide
155
Figure 79 Settings > Add/Edit: Manual
The following table describes the fields in this screen.
Table 56 IPSec Settings > Add/Edit: Manual
LABEL DESCRIPTION
Enable Select this check box to activate this VPN policy. This option determines whether a
VPN rule is applied before a packet leaves the firewall.
IPSec Connection
Name
Type up to 39 alphanumeric characters to identify this VPN policy. You may use
spaces, underscores and dashes, but the Zyxel Device drops trailing spaces.
Remote IPSec
Gateway Address
Type the WAN IP address or the URL (up to 31 characters) of the IPSec router with
which you're making the VPN connection.
Tunnel access from
local IP addresses
Specify the IP addresses of the devices behind the Zyxel Device that can use the
VPN tunnel. The local IP addresses must correspond to the remote IPSec router's
configured remote IP addresses.
Two active SAs cannot have the local and remote IP address(es) both the same.
Two active SAs can have the same local or remote IP address, but not both. You
can configure multiple SAs between the same local and remote IP addresses, as
long as only one is active at any time.
Use the drop-down list box to choose Single Address or Subnet. Select Single
Address for a single IP address. Select Subnet to specify IP addresses on a network
by their subnet mask.