![background image](/i/zyxel/144895/zyxel-zywall-2-ee/h/zyxel-zywall-2-ee-209.png)
ZyWALL 2 Series User’s Guide
VPN Screens
14-3
You can also enter a remote secure gateway’s domain name in the
Secure Gateway Address
field if the
remote secure gateway has a dynamic WAN IP address and is using DDNS. The ZyWALL has to rebuild the
VPN tunnel each time the remote secure gateway’s WAN IP address changes (there may be a delay until the
DDNS servers are updated with the remote gateway’s new WAN IP address).
14.4.1 Dynamic Secure Gateway Address
If the remote secure gateway has a dynamic WAN IP address and does not use DDNS, enter 0.0.0.0 as the
secure gateway’s address. In this case only the remote secure gateway can initiate SAs.
The Secure Gateway IP Address may be configured as 0.0.0.0 only when using
IKE
key management and not
Manual
key management.
14.5 Summary Screen
The following figure helps explain the main fields in the web configurator.
Local and remote IP addresses must be static.
Figure 14-1 IPSec Summary Fields
Click
VPN
to open the
VPN Rules
screen. This is a read-only menu of your IPSec rules (tunnels). Edit or
create an IPSec rule by selecting an index number and then clicking
Edit
to configure the associated
submenus.