Index
ZyWALL USG 100/200 Series User’s Guide
1119
encapsulation 479
encryption 480
ESP 479
established in two phases 472
fragmentation 475
L2TP VPN 549
local network 471
local policy 479
manual key 478
NetBIOS 478
peer 471
Perfect Forward Secrecy 480
PFS 480
phase 2 settings 479
policy enforcement 479
remote access 478
remote IPSec router 471
remote network 471
remote policy 479
replay detection 478
SA life time 479
SA monitor 260
SA see also IPSec SA 506
see also VPN
site-to-site with dynamic peer 478
static site-to-site 478
transport encapsulation 479
tunnel encapsulation 479
VPN gateway 474
IPSec SA
active protocol 506
and firewall 456, 912
and to-ZyWALL firewall 912
authentication algorithms 500, 501
authentication key (manual keys) 508
destination NAT for inbound traffic 510
encapsulation 506
encryption algorithms 501
encryption key (manual keys) 508
local policy 506
manual keys 508
NAT for inbound traffic 508
NAT for outbound traffic 508
Perfect Forward Secrecy (PFS) 507
proposal 507
remote policy 506
search by name 261
search by policy 261
Security Parameter Index (SPI) (manual
keys) 508
see also IPSec
see also VPN
source NAT for inbound traffic 509
source NAT for outbound traffic 509
status 260
transport mode 506
tunnel mode 506
when IKE SA is disconnected 506
IPSec VPN
configuration overview 107
hub and spoke 144
prerequisites 106, 107
see also IPSec
troubleshooting 911
tutorial 141
where used 107
ISP account
CHAP 795
CHAP/PAP 795
MPPE 795
MSCHAP 795
MSCHAP-V2 795
PAP 795
ISP accounts 793
and PPPoE/PPTP interfaces 308, 793
authentication type 795
encryption method 795
stac compression 796
J
Java 670
permissions 47
JavaScript 47
K
key pairs 771
L
L2TP VPN 549
configuration overview 108
configuring in Windows 2000 205