Zyxel-communications 5 Series Manual de usuario Pagina 348

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 835
  • Tabla de contenidos
  • SOLUCIÓN DE PROBLEMAS
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 347
ZyWALL 5/35/70 Series User’s Guide
348 Chapter 18 IPSec VPN
18.9 IPSec SA Using Manual Keys
You might set up an IPSec SA using manual keys when you want to establish a VPN tunnel
quickly, for example, for troubleshooting. You should only do this as a temporary solution,
however, because it is not as secure as a regular IPSec SA.
In IPSec SAs using manual keys, the ZyWALL and remote IPSec router do not establish an
IKE SA. They only establish an IPSec SA. As a result, an IPSec SA using manual keys has
some characteristics of IKE SA and some characteristics of IPSec SA. There are also some
differences between IPSec SA using manual keys and other types of SA.
18.9.1 IPSec SA Proposal Using Manual Keys
In IPSec SA using manual keys, you can only specify one encryption algorithm and one
authentication algorithm. You cannot specify several proposals. There is no DH key exchange,
so you have to provide the encryption key and the authentication key the ZyWALL and remote
IPSec router use.
Note: The ZyWALL and remote IPSec router must use the same encryption key and
authentication key.
18.9.2 Authentication and the Security Parameter Index (SPI)
For authentication, the ZyWALL and remote IPSec router use the SPI, instead of pre-shared
keys, ID type and content. The SPI is an identification number.
Note: The ZyWALL and remote IPSec router must use the same SPI.
18.10 VPN Rules (Manual)
Refer to Figure 171 on page 325 for a graphical representation of the fields in the web
configurator.
Click SECURITY > VPN > VPN Rules (Manual) to open the VPN Rules (Manual) screen.
Use this screen to manage the ZyWALL’s list of VPN rules (tunnels) that use manual keys.
You may want to configure a VPN rule that uses manual key management if you are having
problems with IKE key management.
Vista de pagina 347
1 2 ... 343 344 345 346 347 348 349 350 351 352 353 ... 834 835

Comentarios a estos manuales

Sin comentarios