Table of Contents
ZyWALL USG 100/200 Series User’s Guide
14
7.1.2 Configure the OPT Interface for a Local Network .....................................................119
7.1.3 Configure Zones ....................................................................................................... 120
7.1.4 Configure Port Roles ................................................................................................ 121
7.2 How to Configure a Cellular Interface ................................................................................ 122
7.3 How to Configure Load Balancing ..................................................................................... 124
7.3.1 Set Up Available Bandwidth on Ethernet Interfaces ................................................ 124
7.3.2 Configure the WAN Trunk ........................................................................................ 125
7.4 How to Set Up a Wireless LAN .......................................................................................... 127
7.4.1 Set Up User Accounts .............................................................................................. 127
7.4.2 Create the WLAN Interface ...................................................................................... 128
7.4.3 Set Up the Wireless Clients to Use the WLAN Interface .......................................... 131
7.5 How to Set Up an IPSec VPN Tunnel ................................................................................ 143
7.5.1 Set Up the VPN Gateway ......................................................................................... 144
7.5.2 Set Up the VPN Connection ..................................................................................... 144
7.5.3 Configure Security Policies for the VPN Tunnel ....................................................... 146
7.6 How to Configure a Hub-and-spoke IPSec VPN Without a VPN Concentrator ................. 146
7.7 How to Configure User-aware Access Control .................................................................. 148
7.7.1 Set Up User Accounts .............................................................................................. 149
7.7.2 Set Up User Groups ................................................................................................. 150
7.7.3 Set Up User Authentication Using the RADIUS Server ........................................... 150
7.7.4 Web Surfing Policies With Bandwidth Restrictions .................................................. 152
7.7.5 Set Up MSN Policies ................................................................................................ 155
7.7.6 Set Up Firewall Rules ............................................................................................... 156
7.8 How to Use a RADIUS Server to Authenticate User Accounts based on Groups ............. 157
7.9 How to Use Endpoint Security and Authentication Policies ............................................... 159
7.9.1 Configure the Endpoint Security Objects ................................................................. 159
7.9.2 Configure the Authentication Policy ......................................................................... 161
7.10 How to Configure Service Control ................................................................................... 162
7.10.1 Allow HTTPS Administrator Access Only From the LAN ....................................... 163
7.11 How to Allow Incoming H.323 Peer-to-peer Calls ............................................................ 165
7.11.1 Turn On the ALG .................................................................................................... 166
7.11.2 Set Up a NAT Policy For H.323 .............................................................................. 166
7.11.3 Set Up a Firewall Rule For H.323 ........................................................................... 168
7.12 How to Allow Public Access to a Web Server .................................................................. 169
7.12.1 Create the Address Objects ................................................................................... 170
7.12.2 Configure NAT ........................................................................................................ 170
7.12.3 Set Up a Firewall Rule ........................................................................................... 171
7.13 How to Use an IPPBX on the DMZ .................................................................................. 172
7.13.1 Turn On the ALG .................................................................................................... 174
7.13.2 Create the Address Objects ................................................................................... 174
7.13.3 Setup a NAT Policy for the IPPBX ......................................................................... 175
7.13.4 Set Up a WAN to DMZ Firewall Rule for SIP ......................................................... 176
7.13.5 Set Up a DMZ to LAN Firewall Rule for SIP ........................................................... 177