
ZyWALL 1050 Support Notes
54
All contents copyright (c) 2006 ZyXEL Communications Corporation.
1.4 Large-scale VPN Deployment
With the business growing, network administrator will face the more and more complicated
VPN topology and applications. ZyWALL 1050 supports various types of VPN topology that
can meet the needs of the organizations of any size.
ZyWALL1050 VPN Topology supports fully meshed topology that can be deployed when
the total number of remote site is small. Star topology is recommended when the total number
of remote sites is high, Even more flexible design, Star and Mesh mixed topology (cascading
topology) can be applied for a global distributed environment.
1.4.1 Fully Meshed Topology
In a fully-meshed VPN topology, an
user can access to resources within
remote VPN sites provided that a
PN tunnel was alread
established
1) In order to achieve the VPN connectivity of all sites in the fully meshed VPN topology, all
the sites must be directly connected with VPN tunnels to all the remote sites. The network
administrator has to pay huge establishment and maintenance effort with the new remote
site joining. This VPN topology is suitable for only a few sites connected with VPN.
2) For example, to complete the above topology, administrator needs to repeat the same steps
at least five times and totally needs to establish 10 VPN tunnels. The tunnels list follows:
London
Oslo
Hannover Paris
Madrid
In this topology, each site
plays the same role – handles
incoming encrypted traffic or
encrypts outgoing traffic
designated to a remote site
All models in ZyWALL series
can support Fully-meshed
VPN topology, including:
ZyWALL 2 Plus/5/35/70/1050
Comentarios a estos manuales