EasyManua.ls Logo

ZyXEL Communications ZYWALL 5 - K28. How Can I Keep a Tunnel Alive

ZyXEL Communications ZYWALL 5
305 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
ZyWALL 5 Support Notes
All contents copyright (c) 2006 ZyXEL Communications Corporation.
296
K28. How can I keep a tunnel alive?
To keep a tunnel alive, you can check "Nailed-up" option when configuring your VPN tunnel. With this
option, the ZyWALL will keep IPSec tunnel up at all time. With “Nailed-up”, the ZyWALL will try to
establish whenever tunnel is terminated due to any unknown reason.
K29. Single, Range, Subnet, which types of IP address does ZyWALL support in
VPN/IPSec?
All ZyWALL series support single, range, and subnet configuration for VPN IPSec. In other words, you
can specify a single PC, a range of PCs or even a network of PCs to utilize the VPN/IPSec service.
K30. Does ZyWALL support IPSec pass-through?
Yes, ZyWALL can support IPSec pass-through. ZyWALL series don't only support IPSec/VPN gateway, it
can also be a NAT router supporting IPSec pass-through.
If the VPN connection is initiated from the security gateway behind ZyWALL, no configuration is
necessary for neither NAT nor Firewall.
If the VPN connection is initiated from the security gateway outside of ZyWALL, NAT port forwarding
and Firewall forwarding are necessary.
To configure NAT port forwarding, please go to WEB interface, Setup/ "NAT", put the secure gateway's
IP address in default server.
To configure Firewall forwarding, please go to WEB interface, Setup/Firewall, select Packet Direction to
WAN to LAN, and create a firewall rule the forwards IKE(UDP:500).
K31. Can ZyWALL behave as a NAT router supporting IPSec pass through and an IPSec
gateway simultaneously?
No, ZyWALL can't support them simultaneously. You need to choose either one. If ZyWALL is to support
IPSec pass through, you have to disable the VPN function on ZyWALL. To disable it, you can either
deactivate each VPN rule or issue a CI command, "IPSec switch off".
K32. Will the traffic coming in through the VPN tunnel also be scanned by Anti-Virus, IDP
and Anti-Spam feature in ZyWALL ZyNOS v4.0?
No, VPN traffic will not be inspected by be scanned by Anti-Virus, IDP and Anti-Spam module.
However, we manage to support this feature in the forthcoming ZyNOS firmware.

Table of Contents

Other manuals for ZyXEL Communications ZYWALL 5

Related product manuals