Index
ZyWALL USG 100/200 Series User’s Guide
1143
encryption 488
ESP 487
established in two phases 480
fragmentation 483
L2TP VPN 559
local network 479
local policy 487
manual key 486
NetBIOS 486
peer 479
Perfect Forward Secrecy 488
PFS 488
phase 2 settings 487
policy enforcement 487
remote access 486
remote IPSec router 479
remote network 479
remote policy 487
replay detection 486
SA life time 487
SA monitor 265
SA see also IPSec SA 514
see also VPN
site-to-site with dynamic peer 486
static site-to-site 486
transport encapsulation 487
tunnel encapsulation 487
VPN gateway 482
IPSec SA
active protocol 514
and firewall 464, 932
and to-device firewall 932
authentication algorithms 508, 509
authentication key (manual keys) 516
destination NAT for inbound traffic 518
encapsulation 514
encryption algorithms 509
encryption key (manual keys) 516
local policy 514
manual keys 516
NAT for inbound traffic 516
NAT for outbound traffic 516
Perfect Forward Secrecy (PFS) 515
proposal 515
remote policy 514
search by name 266
search by policy 266
Security Parameter Index (SPI) (manual
keys) 516
see also IPSec
see also VPN
source NAT for inbound traffic 517
source NAT for outbound traffic 517
status 265
transport mode 514
tunnel mode 514
when IKE SA is disconnected 514
IPSec VPN
configuration overview 109
hub and spoke 146
prerequisites 108, 109
see also IPSec
troubleshooting 931
tutorial 143
where used 109
ISP account
CHAP 809
CHAP/PAP 809
MPPE 809
MSCHAP 809
MSCHAP-V2 809
PAP 809
ISP accounts 807
and PPPoE/PPTP interfaces 314, 807
authentication type 809
encryption method 809
stac compression 810
J
Java 684
permissions 47
JavaScript 47
K
key pairs 785
L
L2TP VPN 559
configuration overview 110
configuring in Windows 2000 207
configuring in Windows Vista 191