![background image](/i/zyxel/144701/zyxel-zywall-2wg-ee/h/zyxel-zywall-2wg-ee-316.png)
Chapter 15 IPSec VPN Screens
ZyWALL 2WG User’s Guide
316
15.3 The VPN Rules (Manual) Screen
for a graphical representation of the fields in the web
configurator.
Click
SECURITY > VPN
>
VPN Rules (Manual)
to open the
VPN Rules (Manual)
screen.
Use this screen to manage the ZyWALL’s list of VPN rules (tunnels) that use manual keys.
You may want to configure a VPN rule that uses manual key management if you are having
problems with IKE key management.
Figure 200
SECURITY > VPN > VPN Rules (Manual)
The following table describes the labels in this screen.
Table 89
SECURITY > VPN > VPN Rules (Manual)
LABEL
DESCRIPTION
#
This is the VPN policy index number.
Name
This field displays the identification name for this VPN policy.
Active
This field displays whether the VPN policy is active or not. A
Yes
signifies that this
VPN policy is active.
No
signifies that this VPN policy is not active.
Local Network
This is the IP address(es) of computer(s) on your local network behind your
ZyWALL.
The same (static) IP address is displayed twice when the
Local Network Address
Type
field in the
VPN - Manual Key - Edit
screen is configured to
Single Address
.
The beginning and ending (static) IP addresses, in a range of computers are
displayed when the
Local Network Address Type
field in the
VPN - Manual Key -
Edit
screen is configured to
Range Address
.
A (static) IP address and a subnet mask are displayed when the
Local Network
Address Type
field in the
VPN - Manual Key - Edit
screen is configured to
Subnet
Address
.
Remote Network
This is the IP address(es) of computer(s) on the remote network behind the remote
IPSec router.
This field displays
N/A
when the
Remote Gateway Address
field displays
0.0.0.0
.
In this case only the remote IPSec router can initiate the VPN.
The same (static) IP address is displayed twice when the
Remote Network
Address Type
field in the
VPN - Manual Key - Edit
screen is configured to
Single
Address
.
The beginning and ending (static) IP addresses, in a range of computers are
displayed when the
Remote Network Address Type
field in the
VPN - Manual
Key - Edit
screen is configured to
Range Address
.
A (static) IP address and a subnet mask are displayed when the
Remote Network
Address Type
field in the
VPN - Manual Key - Edit
screen is configured to
Subnet
Address
.
Encap.
This field displays
Tunnel
or
Transport
mode (
Tunnel
is the default selection).