10 configuring global setting, Figure 57 vpn: sa monitor, Table 46 sa monitor – ZyXEL Communications ZyXEL ZyWALL P1 User Manual

Page 146

Advertising
background image

ZyWALL P1 User’s Guide

Chapter 9 VPN Screens

145

Note: When there is outbound traffic but no inbound traffic, the SA times out

automatically after two minutes. A tunnel with no outbound or inbound traffic is
"idle" and does not timeout until the SA lifetime period expires. See

Section

9.4.2 on page 131

on keep alive to have the ZyWALL renegotiate an IPSec SA

when the SA lifetime expires, even if there is no traffic.

Figure 57 VPN: SA Monitor

The following table describes the labels in this screen.

9.10 Configuring Global Setting

To change your ZyWALL’s global settings, click VPN, then the Global Setting tab. The
screen appears as shown.

Table 46 SA Monitor

LABEL

DESCRIPTION

#

This is the security association index number.

Name

This field displays the identification name for this VPN policy.

Local Network

This field displays the IP address of the computer using the VPN IPSec feature of

your ZyWALL.

Remote Network

This field displays IP address (in a range) of computers on the remote network

behind the remote IPSec router.

Encapsulation

This field displays Tunnel or Transport mode.

IPSec Algorithm

This field displays the security protocols used for an SA.
Both AH and ESP increase ZyWALL processing requirements and

communications latency (delay).

Refresh

Click Refresh to display the current active VPN connection(s).

Disconnect

Select a security association index number that you want to disconnect and then

click Disconnect.

Advertising