
ZyXEL Confidential
404XD3C0.docx
102/181
IKE: Static rule, enable XAUTH and set as client mode.
IPSEC Policy: Local=Single 1.1.1.1, Remote=Single 2.2.2.2
(2) On Bridge_B, add two VPN rules:
1. Rule one:
IKE: Static rule, enable XAUTH and set as server mode.
IPSEC: Local=Single 3.3.3.3, Remote=Single 4.4.4.4
2. Rule two:
IKE: Dynamic rule. XATUTH is disabled.
IPSEC Policy: Local=Single 1.1.1.1, Remote=Single 2.2.2.2
(3)Dial VPN tunnel from ZyWALL_A to Bridge_B, the VPN tunnel will be
successfully built up with Bridge_B’s rule two.
30. [BUG FIX]
Symptom: The eWC>Firewall>Default Rule page will pup up JavaScript error in
bridge mode.
Condition:
(1) Go to eWC>FIREWALL>Default Rule page.
(2) Click Reset button, ZyWALL pup up JavaScript error.
31. [BUG FIX]
Symptom: Device crash (Soft watchdog starts up.)
Condition:
(1) Firewall+NAT+AV+IDP+AS+AS black list+LB
(2) LAN has a mail client、mail server;DMZ has a mail client、2 mail server;
WLAN has a mail client. All of them are on IxLoad
(3) Run IxLoad 10 minutes,device crash
32. [BUG FIX]
Symptom: Traffic can’t go out after use the tfgen tool.
Condition:
(1) Restore default rom file.
(2) In LAN, use the TfGen with following setting.
Utilization: 40000; Destination: 168.95.1.1; Port: 777;
After using the tfgen, all the traffic from LAN can’t go outside.
Modifications in V4.01(XD.0)b1 | 04/24/2006
1. [ENHANCEMENT]
(1) Add UTM reports for IDP/AV/AS.
(2) Change linkage from GUI>Logs>Reports to GUI>UTM Reports>System Reports.
(3) Re-layout UTM Home GUI for ZyWALL 4.01.
2. [ENHANCEMENT]
Add redundant IPSec gateway (IPSec HA).
3. [ENHANCEMENT]
IPSec traffic can be managed by security rule (IDP/AV/AS/FW/CF/BM)
4. [FEATURE CHANGE]
Was: IPSec auto-build tunnel command can only build tunnels with same secure
gateway IP.
Is: Users can automatically build VPN tunnels with incremental secure gateway IP
Comentarios a estos manuales