Zyxel-communications 5 Series Manual do Utilizador Página 1

Consulte online ou descarregue Manual do Utilizador para Hardware Zyxel-communications 5 Series. ZyXEL Communications 5 Series User Manual Manual do Utilizador

  • Descarregar
  • Adicionar aos meus manuais
  • Imprimir
Vista de página 0
ZyWALL 5/35/70 Series
Internet Security Appliance
Users Guide
Version 4.01
7/2006
Edition 1
Vista de página 0
1 2 3 4 5 6 ... 834 835

Resumo do Conteúdo

Página 1 - ZyWALL 5/35/70 Series

ZyWALL 5/35/70 SeriesInternet Security ApplianceUser’s GuideVersion 4.017/2006Edition 1

Página 2

ZyWALL 5/35/70 Series User’s Guide10 Customer Support

Página 3 - Copyright

ZyWALL 5/35/70 Series User’s Guide100 Chapter 3 Wizard SetupClick VPN Setup in the Wizard Setup Welcome screen (Figure 17 on page 90) to open the VPN

Página 4 - Certifications

ZyWALL 5/35/70 Series User’s GuideChapter 3 Wizard Setup 1013.4 VPN Wizard Network SettingUse this screen to name the VPN network policy (IPSec SA) a

Página 5 - Safety Warnings

ZyWALL 5/35/70 Series User’s Guide102 Chapter 3 Wizard SetupFigure 30 VPN Wizard: Network SettingThe following table describes the labels in this sc

Página 6 - 6 Safety Warnings

ZyWALL 5/35/70 Series User’s GuideChapter 3 Wizard Setup 1033.5 VPN Wizard IKE Tunnel Setting (IKE Phase 1)Use this screen to specify the authenticat

Página 7 - ZyXEL Limited Warranty

ZyWALL 5/35/70 Series User’s Guide104 Chapter 3 Wizard SetupThe following table describes the labels in this screen.3.6 VPN Wizard IPSec Setting (IKE

Página 8 - Customer Support

ZyWALL 5/35/70 Series User’s GuideChapter 3 Wizard Setup 105Figure 32 VPN Wizard: IPSec SettingThe following table describes the labels in this scre

Página 9 - Customer Support 9

ZyWALL 5/35/70 Series User’s Guide106 Chapter 3 Wizard Setup3.7 VPN Wizard Status SummaryThis read-only screen shows the status of the current VPN se

Página 10 - 10 Customer Support

ZyWALL 5/35/70 Series User’s GuideChapter 3 Wizard Setup 107Figure 33 VPN Wizard: VPN StatusThe following table describes the labels in this screen.

Página 11 - Table of Contents

ZyWALL 5/35/70 Series User’s Guide108 Chapter 3 Wizard SetupName This is the name of this VPN network policy.Network Policy SettingLocal NetworkStarti

Página 12

ZyWALL 5/35/70 Series User’s GuideChapter 3 Wizard Setup 1093.8 VPN Wizard Setup CompleteCongratulations! You have successfully set up the VPN rule f

Página 13

ZyWALL 5/35/70 Series User’s GuideTable of Contents 11Table of ContentsCopyright ...

Página 14 - Chapter 10

ZyWALL 5/35/70 Series User’s Guide110 Chapter 3 Wizard Setup

Página 15 - Chapter 11

ZyWALL 5/35/70 Series User’s GuideChapter 4 Tutorial 111CHAPTER 4TutorialThis chapter describes how to apply security settings to VPN traffic.4.1 Sec

Página 16

ZyWALL 5/35/70 Series User’s Guide112 Chapter 4 TutorialFigure 35 IDP for From VPN Traffic Here is how you would configure this example. 1 Click SEC

Página 17 - Chapter 16

ZyWALL 5/35/70 Series User’s GuideChapter 4 Tutorial 1134.1.2 IDP for To VPN Traffic ExampleYou can also apply security settings to the To VPN packet

Página 18 - Chapter 18

ZyWALL 5/35/70 Series User’s Guide114 Chapter 4 TutorialFigure 38 IDP Configuration for To VPN Traffic4.2 Firewall Rule for VPN ExampleThe firewall

Página 19

ZyWALL 5/35/70 Series User’s GuideChapter 4 Tutorial 115Figure 39 Firewall Rule for VPN4.2.1 Configuring the VPN RuleThis section shows how to conf

Página 20

ZyWALL 5/35/70 Series User’s Guide116 Chapter 4 TutorialFigure 41 SECURITY > VPN > VPN Rules (IKE)> Add Gateway Policy 3 Click the Add N

Página 21 - Chapter 26

ZyWALL 5/35/70 Series User’s GuideChapter 4 Tutorial 117Figure 42 SECURITY > VPN > VPN Rules (IKE): With Gateway Policy Example 4 Use this sc

Página 22 - Chapter 28

ZyWALL 5/35/70 Series User’s Guide118 Chapter 4 TutorialFigure 43 SECURITY > VPN > VPN Rules (IKE)> Add Network Policy 4.2.2 Configuring

Página 23

ZyWALL 5/35/70 Series User’s GuideChapter 4 Tutorial 1194.2.2.1 Firewall Rule to Allow Access ExampleConfigure a firewall rule that allows FTP access

Página 24

ZyWALL 5/35/70 Series User’s Guide12 Table of Contents2.4.5 Navigation Panel ...

Página 25

ZyWALL 5/35/70 Series User’s Guide120 Chapter 4 TutorialFigure 45 SECURITY > FIREWALL > Rule Summary > Edit: Allow 4 The rule displays in t

Página 26

ZyWALL 5/35/70 Series User’s GuideChapter 4 Tutorial 121Figure 46 SECURITY > FIREWALL > Rule Summary: Allow4.2.2.2 Default Firewall Rule to B

Página 27

ZyWALL 5/35/70 Series User’s Guide122 Chapter 4 Tutorial

Página 28

ZyWALL 5/35/70 Series User’s GuideChapter 5 Registration 123CHAPTER 5Registration5.1 myZyXEL.com overviewmyZyXEL.com is ZyXEL’s online services cente

Página 29

ZyWALL 5/35/70 Series User’s Guide124 Chapter 5 RegistrationYou will get automatic e-mail notification of new signature releases from mySecurityZone a

Página 30 - 30 Table of Contents

ZyWALL 5/35/70 Series User’s GuideChapter 5 Registration 125The following table describes the labels in this screen. Note: If the ZyWALL is registered

Página 31 - List of Figures

ZyWALL 5/35/70 Series User’s Guide126 Chapter 5 RegistrationFigure 49 REGISTRATION: Registered Device5.3 ServiceAfter you activate a trial, you can

Página 32

ZyWALL 5/35/70 Series User’s GuideChapter 5 Registration 127The following table describes the labels in this screen. Table 22 REGISTRATION > Serv

Página 33

ZyWALL 5/35/70 Series User’s Guide128 Chapter 5 Registration

Página 34

ZyWALL 5/35/70 Series User’s GuideChapter 6 LAN Screens 129CHAPTER 6LAN ScreensThis chapter describes how to configure LAN settings. This chapter is o

Página 35

ZyWALL 5/35/70 Series User’s GuideTable of Contents 13Chapter 6LAN Screens...

Página 36

ZyWALL 5/35/70 Series User’s Guide130 Chapter 6 LAN ScreensWhere you obtain your network number depends on your particular situation. If the ISP or yo

Página 37

ZyWALL 5/35/70 Series User’s GuideChapter 6 LAN Screens 1316.3 DHCP The ZyWALL can use DHCP (Dynamic Host Configuration Protocol, RFC 2131 and RFC 21

Página 38

ZyWALL 5/35/70 Series User’s Guide132 Chapter 6 LAN ScreensIGMP (Internet Group Multicast Protocol) is a network-layer protocol used to establish memb

Página 39

ZyWALL 5/35/70 Series User’s GuideChapter 6 LAN Screens 133Figure 52 NETWORK > LANThe following table describes the labels in this screen.Table 2

Página 40

ZyWALL 5/35/70 Series User’s Guide134 Chapter 6 LAN ScreensRIP Version The RIP Version field controls the format and the broadcasting method of the RI

Página 41

ZyWALL 5/35/70 Series User’s GuideChapter 6 LAN Screens 1356.8 LAN Static DHCPThis table allows you to assign IP addresses on the LAN to specific ind

Página 42

ZyWALL 5/35/70 Series User’s Guide136 Chapter 6 LAN ScreensFigure 53 NETWORK > LAN > Static DHCPThe following table describes the labels in th

Página 43

ZyWALL 5/35/70 Series User’s GuideChapter 6 LAN Screens 137The ZyWALL has a single LAN interface. Even though more than one of ports 1~4 may be in the

Página 44 - 44 List of Figures

ZyWALL 5/35/70 Series User’s Guide138 Chapter 6 LAN ScreensFigure 55 NETWORK > LAN > IP AliasThe following table describes the labels in this

Página 45 - List of Tables

ZyWALL 5/35/70 Series User’s GuideChapter 6 LAN Screens 1396.10 LAN Port RolesUse the Port Roles screen to set ports as part of the LAN, DMZ and/or W

Página 46

ZyWALL 5/35/70 Series User’s Guide14 Table of Contents8.8 WAN Route ...

Página 47

ZyWALL 5/35/70 Series User’s Guide140 Chapter 6 LAN ScreensFigure 56 NETWORK > LAN > Port RolesThe following table describes the labels in thi

Página 48

ZyWALL 5/35/70 Series User’s GuideChapter 7 Bridge Screens 141CHAPTER 7Bridge ScreensThis chapter describes how to configure bridge settings. This cha

Página 49

ZyWALL 5/35/70 Series User’s Guide142 Chapter 7 Bridge Screens7.2 Spanning Tree Protocol (STP)STP detects and breaks network loops and provides backu

Página 50

ZyWALL 5/35/70 Series User’s GuideChapter 7 Bridge Screens 143STP-aware bridges exchange Bridge Protocol Data Units (BPDUs) periodically. When the bri

Página 51

ZyWALL 5/35/70 Series User’s Guide144 Chapter 7 Bridge ScreensFigure 59 NETWORK > BridgeThe following table describes the labels in this screen.T

Página 52 - 52 List of Tables

ZyWALL 5/35/70 Series User’s GuideChapter 7 Bridge Screens 1457.4 Bridge Port Roles Use the Port Roles screen to set ports as part of the LAN, DMZ an

Página 53 - User Guide Feedback

ZyWALL 5/35/70 Series User’s Guide146 Chapter 7 Bridge ScreensFigure 60 NETWORK > Bridge > Port RolesThe following table describes the labels

Página 54 - Graphics Icons Key

ZyWALL 5/35/70 Series User’s GuideChapter 8 WAN Screens 147CHAPTER 8WAN ScreensThis chapter describes how to configure WAN settings. Multiple WAN and

Página 55 - CHAPTER 1

ZyWALL 5/35/70 Series User’s Guide148 Chapter 8 WAN ScreensYou can select through which WAN port you want to send out traffic from UPnP-enabled applic

Página 56 - 1.2.1 Physical Features

ZyWALL 5/35/70 Series User’s GuideChapter 8 WAN Screens 1498.4.1.1 Example 1The following figure depicts an example where both the WAN ports on the Z

Página 57 - 1.2.2 Non-Physical Features

ZyWALL 5/35/70 Series User’s GuideTable of Contents 1510.9.1 Introduction to RADIUS ...

Página 58

ZyWALL 5/35/70 Series User’s Guide150 Chapter 8 WAN Screens8.4.2 Weighted Round Robin Similar to the Round Robin (RR) algorithm, the Weighted Round R

Página 59

ZyWALL 5/35/70 Series User’s GuideChapter 8 WAN Screens 151Figure 64 Spillover Algorithm Example8.5 TCP/IP Priority (Metric)The metric represents t

Página 60

ZyWALL 5/35/70 Series User’s Guide152 Chapter 8 WAN ScreensFigure 65 NETWORK > WAN (General)

Página 61

ZyWALL 5/35/70 Series User’s GuideChapter 8 WAN Screens 153The following table describes the labels in this screen.Table 33 NETWORK > WAN (Genera

Página 62

ZyWALL 5/35/70 Series User’s Guide154 Chapter 8 WAN ScreensCheck WAN1/2 ConnectivitySelect the check box to have the ZyWALL periodically test the resp

Página 63 - 1.3.2 VPN Application

ZyWALL 5/35/70 Series User’s GuideChapter 8 WAN Screens 1558.7 Configuring Load Balancing To configure load balancing on the ZyWALL, click NETWORK &g

Página 64 - 1.3.3 Front Panel Lights

ZyWALL 5/35/70 Series User’s Guide156 Chapter 8 WAN Screens8.7.2 Weighted Round RobinTo load balance using the weighted round robin method, select We

Página 65

ZyWALL 5/35/70 Series User’s GuideChapter 8 WAN Screens 1578.7.3 SpilloverTo load balance using the spillover method, select Spillover in the Load Ba

Página 66

ZyWALL 5/35/70 Series User’s Guide158 Chapter 8 WAN ScreensFigure 69 NETWORK > WAN (Route)The following table describes the labels in this screen

Página 67 - CHAPTER 2

ZyWALL 5/35/70 Series User’s GuideChapter 8 WAN Screens 1598.9 WAN IP Address Assignment Every computer on the Internet must have a unique IP address

Página 68 - 2.3 Resetting the ZyWALL

ZyWALL 5/35/70 Series User’s Guide16 Table of Contents11.13.1 Firewall Edit Custom Service ...

Página 69 - Then click Send

ZyWALL 5/35/70 Series User’s Guide160 Chapter 8 WAN Screens1 The ISP tells you the DNS server addresses, usually in the form of an information sheet,

Página 70 - 2.4.1 Title Bar

ZyWALL 5/35/70 Series User’s GuideChapter 8 WAN Screens 161Figure 70 NETWORK > WAN > WAN (Ethernet Encapsulation) The following table descri

Página 71 - 2.4.2 Main Window

ZyWALL 5/35/70 Series User’s Guide162 Chapter 8 WAN ScreensRetype to Confirm Type your password again to make sure that you have entered is correctly.

Página 72

ZyWALL 5/35/70 Series User’s GuideChapter 8 WAN Screens 1638.12.2 PPPoE EncapsulationThe ZyWALL supports PPPoE (Point-to-Point Protocol over Ethernet

Página 73

ZyWALL 5/35/70 Series User’s Guide164 Chapter 8 WAN ScreensOperationally, PPPoE saves significant effort for both you and the ISP or carrier, as it re

Página 74

ZyWALL 5/35/70 Series User’s GuideChapter 8 WAN Screens 165The following table describes the labels in this screen.Table 41 NETWORK > WAN > WA

Página 75

ZyWALL 5/35/70 Series User’s Guide166 Chapter 8 WAN Screens8.12.3 PPTP EncapsulationPoint-to-Point Tunneling Protocol (PPTP) is a network protocol th

Página 76

ZyWALL 5/35/70 Series User’s GuideChapter 8 WAN Screens 167PPTP supports on-demand, multi-protocol and virtual private networking over public networks

Página 77

ZyWALL 5/35/70 Series User’s Guide168 Chapter 8 WAN ScreensThe following table describes the labels in this screen.Table 42 NETWORK > WAN > WA

Página 78 - 2.4.5 Navigation Panel

ZyWALL 5/35/70 Series User’s GuideChapter 8 WAN Screens 169Enable NAT (Network Address Translation)Network Address Translation (NAT) allows the transl

Página 79 - Table 7 Screens Summary

ZyWALL 5/35/70 Series User’s GuideTable of Contents 1714.2.2 Notes About the ZyWALL Anti-Virus ...27

Página 80

ZyWALL 5/35/70 Series User’s Guide170 Chapter 8 WAN Screens8.13 Traffic Redirect Traffic redirect forwards WAN traffic to a backup gateway when t

Página 81

ZyWALL 5/35/70 Series User’s GuideChapter 8 WAN Screens 171Figure 75 NETWORK > WAN > Traffic RedirectThe following table describes the labels

Página 82

ZyWALL 5/35/70 Series User’s Guide172 Chapter 8 WAN ScreensFigure 76 NETWORK > WAN > Dial Backup

Página 83 - 2.4.6 Port Statistics

ZyWALL 5/35/70 Series User’s GuideChapter 8 WAN Screens 173The following table describes the labels in this screen.Table 44 NETWORK > WAN > Di

Página 84

ZyWALL 5/35/70 Series User’s Guide174 Chapter 8 WAN ScreensEnable RIP Select this check box to turn on RIP (Routing Information Protocol), which allow

Página 85 - 2.4.8 DHCP Table Screen

ZyWALL 5/35/70 Series User’s GuideChapter 8 WAN Screens 1758.16 Advanced Modem Setup 8.16.1 AT Command StringsFor regular telephone lines, the defa

Página 86 - 2.4.9 VPN Status

ZyWALL 5/35/70 Series User’s Guide176 Chapter 8 WAN ScreensFigure 77 NETWORK > WAN > Dial Backup > Edit The following table describes the

Página 87 - 2.4.10 Bandwidth Monitor

ZyWALL 5/35/70 Series User’s GuideChapter 8 WAN Screens 177Dial Timeout (sec) Type a number of seconds for the ZyWALL to try to set up an outgoing cal

Página 88

ZyWALL 5/35/70 Series User’s Guide178 Chapter 8 WAN Screens

Página 89 - CHAPTER 3

ZyWALL 5/35/70 Series User’s GuideChapter 9 DMZ Screens 179CHAPTER 9DMZ ScreensThis chapter describes how to configure the ZyWALL’s DMZ.9.1 DMZ The

Página 90 - 3.2 Internet Access

ZyWALL 5/35/70 Series User’s Guide18 Table of ContentsChapter 17Content Filtering Reports...

Página 91 - Chapter 3 Wizard Setup 91

ZyWALL 5/35/70 Series User’s Guide180 Chapter 9 DMZ ScreensFigure 78 NETWORK > DMZ The following table describes the labels in this screen. Table

Página 92 - 3.2.1.2 PPPoE Encapsulation

ZyWALL 5/35/70 Series User’s GuideChapter 9 DMZ Screens 181RIP Version The RIP Version field controls the format and the broadcasting method of the RI

Página 93 - 3.2.1.3 PPTP Encapsulation

ZyWALL 5/35/70 Series User’s Guide182 Chapter 9 DMZ Screens9.3 DMZ Static DHCP This table allows you to assign IP addresses on the DMZ to specific i

Página 94 - 94 Chapter 3 Wizard Setup

ZyWALL 5/35/70 Series User’s GuideChapter 9 DMZ Screens 183Figure 79 NETWORK > DMZ > Static DHCP The following table describes the labels in

Página 95 - Chapter 3 Wizard Setup 95

ZyWALL 5/35/70 Series User’s Guide184 Chapter 9 DMZ ScreensThe ZyWALL has a single DMZ interface. Even though more than one of ports 1~4 may be in the

Página 96 - 96 Chapter 3 Wizard Setup

ZyWALL 5/35/70 Series User’s GuideChapter 9 DMZ Screens 1859.5 DMZ Public IP Address ExampleThe following figure shows a simple network setup with pu

Página 97 - Chapter 3 Wizard Setup 97

ZyWALL 5/35/70 Series User’s Guide186 Chapter 9 DMZ ScreensFigure 81 DMZ Public Address Example9.6 DMZ Private and Public IP Address ExampleThe fol

Página 98 - 98 Chapter 3 Wizard Setup

ZyWALL 5/35/70 Series User’s GuideChapter 9 DMZ Screens 187Figure 82 DMZ Private and Public Address Example9.7 DMZ Port Roles Use the Port Roles s

Página 99 - Chapter 3 Wizard Setup 99

ZyWALL 5/35/70 Series User’s Guide188 Chapter 9 DMZ ScreensFigure 83 NETWORK > DMZ > Port Roles The following table describes the labels in th

Página 100 - 100 Chapter 3 Wizard Setup

ZyWALL 5/35/70 Series User’s GuideChapter 10 Wireless LAN 189CHAPTER 10Wireless LANThis chapter discusses how to configure wireless LAN on the ZyWALL.

Página 101 - Chapter 3 Wizard Setup 101

ZyWALL 5/35/70 Series User’s GuideTable of Contents 1918.16.1 Hub-and-spoke VPN Example ...35

Página 102 - 102 Chapter 3 Wizard Setup

ZyWALL 5/35/70 Series User’s Guide190 Chapter 10 Wireless LANClick NETWORK, > WLAN to open the WLAN screen to configure the IP address for ZyWALL’s

Página 103 - Chapter 3 Wizard Setup 103

ZyWALL 5/35/70 Series User’s GuideChapter 10 Wireless LAN 191RIP Version The RIP Version field controls the format and the broadcasting method of the

Página 104 - 104 Chapter 3 Wizard Setup

ZyWALL 5/35/70 Series User’s Guide192 Chapter 10 Wireless LAN10.3 WLAN Static DHCP This table allows you to assign IP addresses on the WLAN to speci

Página 105 - Chapter 3 Wizard Setup 105

ZyWALL 5/35/70 Series User’s GuideChapter 10 Wireless LAN 193Figure 85 NETWORK > WLAN > Static DHCP The following table describes the labels i

Página 106 - 106 Chapter 3 Wizard Setup

ZyWALL 5/35/70 Series User’s Guide194 Chapter 10 Wireless LANThe ZyWALL has a single WLAN interface. Even though more than one of ports 1~4 may be in

Página 107 - Chapter 3 Wizard Setup 107

ZyWALL 5/35/70 Series User’s GuideChapter 10 Wireless LAN 19510.5 WLAN Port Roles Use the Port Roles screen to set ports as part of the LAN, DMZ and

Página 108 - 108 Chapter 3 Wizard Setup

ZyWALL 5/35/70 Series User’s Guide196 Chapter 10 Wireless LANFigure 87 WLAN Port Role Example Note: Do the following if you are configuring from a c

Página 109 - Chapter 3 Wizard Setup 109

ZyWALL 5/35/70 Series User’s GuideChapter 10 Wireless LAN 197The following table describes the labels in this screen. After you change the LAN/DMZ/WLA

Página 110 - 110 Chapter 3 Wizard Setup

ZyWALL 5/35/70 Series User’s Guide198 Chapter 10 Wireless LANFigure 90 ZyWALL Wireless Security LevelsIf you do not enable any wireless security on

Página 111 - CHAPTER 4

ZyWALL 5/35/70 Series User’s GuideChapter 10 Wireless LAN 19910.6.3 Restricted AccessThe MAC Filter screen allows you to configure the AP to give exc

Página 113 - Chapter 4 Tutorial 113

ZyWALL 5/35/70 Series User’s Guide20 Table of Contents21.1.5 Port Restricted Cone NAT ...

Página 114 - 114 Chapter 4 Tutorial

ZyWALL 5/35/70 Series User’s Guide200 Chapter 10 Wireless LAN10.9 802.1x OverviewThe IEEE 802.1x standard outlines enhanced security methods for both

Página 115 - Chapter 4 Tutorial 115

ZyWALL 5/35/70 Series User’s GuideChapter 10 Wireless LAN 201Sent by the access point requesting accounting.• Accounting-ResponseSent by the RADIUS se

Página 116 - 116 Chapter 4 Tutorial

ZyWALL 5/35/70 Series User’s Guide202 Chapter 10 Wireless LAN10.10 Dynamic WEP Key ExchangeThe AP maps a unique key that is generated with the RADIUS

Página 117 - Chapter 4 Tutorial 117

ZyWALL 5/35/70 Series User’s GuideChapter 10 Wireless LAN 203Temporal Key Integrity Protocol (TKIP) uses 128-bit keys that are dynamically generated a

Página 118 - 118 Chapter 4 Tutorial

ZyWALL 5/35/70 Series User’s Guide204 Chapter 10 Wireless LANFigure 92 WPA-PSK Authentication10.13 Introduction to RADIUSThe ZyWALL can use an exte

Página 119 - Chapter 4 Tutorial 119

ZyWALL 5/35/70 Series User’s GuideChapter 10 Wireless LAN 205Figure 93 WPA with RADIUS Application Example10.15 Wireless Client WPA SupplicantsA wi

Página 120 - 120 Chapter 4 Tutorial

ZyWALL 5/35/70 Series User’s Guide206 Chapter 10 Wireless LANFigure 94 NETWORK > WIRELESS CARD: No SecurityThe following table describes the labe

Página 121 - Chapter 4 Tutorial 121

ZyWALL 5/35/70 Series User’s GuideChapter 10 Wireless LAN 20710.16.1 Static WEPStatic WEP provides a mechanism for encrypting data using encryption k

Página 122 - 122 Chapter 4 Tutorial

ZyWALL 5/35/70 Series User’s Guide208 Chapter 10 Wireless LANFigure 95 NETWORK > WIRELESS CARD: Static WEPThe following table describes the wirel

Página 123 - CHAPTER 5

ZyWALL 5/35/70 Series User’s GuideChapter 10 Wireless LAN 209Figure 96 NETWORK > WIRELESS CARD: WPA-PSKThe following wireless LAN security fields

Página 124 - 5.2 Registration

ZyWALL 5/35/70 Series User’s GuideTable of Contents 2124.7.5 Maximize Bandwidth Usage Example ...42624.

Página 125 - Table 21 REGISTRATION

ZyWALL 5/35/70 Series User’s Guide210 Chapter 10 Wireless LAN10.16.3 WPAClick NETWORK > WIRELESS CARD to display the Wireless Card screen. Select

Página 126 - 5.3 Service

ZyWALL 5/35/70 Series User’s GuideChapter 10 Wireless LAN 21110.16.4 IEEE 802.1x + Dynamic WEPClick NETWORK > WIRELESS CARD to display the Wireles

Página 127 - Chapter 5 Registration 127

ZyWALL 5/35/70 Series User’s Guide212 Chapter 10 Wireless LANThe following wireless LAN security fields become available when you select 802.1x + Dyna

Página 128 - 128 Chapter 5 Registration

ZyWALL 5/35/70 Series User’s GuideChapter 10 Wireless LAN 213Figure 99 NETWORK > WIRELESS CARD: 802.1x + Static WEPThe following wireless LAN sec

Página 129 - CHAPTER 6

ZyWALL 5/35/70 Series User’s Guide214 Chapter 10 Wireless LAN10.16.6 IEEE 802.1x + No WEPClick the NETWORK > WIRELESS CARD to display the Wireless

Página 130 - 6.2.1 Private IP Addresses

ZyWALL 5/35/70 Series User’s GuideChapter 10 Wireless LAN 215The following wireless LAN security fields become available when you select 802.1x + No W

Página 131 - 6.5 Multicast

ZyWALL 5/35/70 Series User’s Guide216 Chapter 10 Wireless LANFigure 101 NETWORK > WIRELESS CARD: No Access 802.1x + Static WEPThe following wirel

Página 132 - 6.7 LAN

ZyWALL 5/35/70 Series User’s GuideChapter 10 Wireless LAN 21710.17 MAC Filter The MAC filter screen allows you to configure the ZyWALL to give exclus

Página 133 - Table 23 NETWORK > LAN

ZyWALL 5/35/70 Series User’s Guide218 Chapter 10 Wireless LANUser Name Enter a descriptive name for the MAC address.MAC AddressEnter the MAC addresses

Página 134 - 134 Chapter 6 LAN Screens

ZyWALL 5/35/70 Series User’s GuideChapter 11 Firewall 219CHAPTER 11FirewallThis chapter shows you how to configure your ZyWALL’s firewall.11.1 Firewa

Página 135 - 6.8 LAN Static DHCP

ZyWALL 5/35/70 Series User’s Guide22 Table of Contents26.4.2 Netscape Navigator Warning Messages ...45626.

Página 136 - 6.9 LAN IP Alias

ZyWALL 5/35/70 Series User’s Guide220 Chapter 11 FirewallYour customized rules take precedence and override the ZyWALL’s default settings. The ZyWALL

Página 137 - Chapter 6 LAN Screens 137

ZyWALL 5/35/70 Series User’s GuideChapter 11 Firewall 221To set the ZyWALL to by default silently block traffic from WAN 1 from going to the DMZ inter

Página 138 - 138 Chapter 6 LAN Screens

ZyWALL 5/35/70 Series User’s Guide222 Chapter 11 FirewallBy default, the ZyWALL drops packets traveling in the following directions.See Chapter 4 on p

Página 139 - 6.10 LAN Port Roles

ZyWALL 5/35/70 Series User’s GuideChapter 11 Firewall 223Figure 106 From LAN to VPN Example In order to do this, you would configure the SECURITY &g

Página 140 - 140 Chapter 6 LAN Screens

ZyWALL 5/35/70 Series User’s Guide224 Chapter 11 Firewall11.3.2 From VPN Packet Direction You can also apply firewall rules to traffic that comes in

Página 141 - CHAPTER 7

ZyWALL 5/35/70 Series User’s GuideChapter 11 Firewall 225Figure 109 Block VPN to LAN Traffic by Default Example 11.3.3 From VPN To VPN Packet Di

Página 142 - 7.2.3 How STP Works

ZyWALL 5/35/70 Series User’s Guide226 Chapter 11 FirewallFigure 110 From VPN to VPN Example You would configure the SECURITY > FIREWALL > Defa

Página 143 - 7.3 Bridge

ZyWALL 5/35/70 Series User’s GuideChapter 11 Firewall 227Consider these security ramifications before creating a rule:1 Does this rule stop LAN users

Página 144 - 144 Chapter 7 Bridge Screens

ZyWALL 5/35/70 Series User’s Guide228 Chapter 11 Firewall• The second row is the firewall’s default policy that allows all traffic from the LAN to go

Página 145 - 7.4 Bridge Port Roles

ZyWALL 5/35/70 Series User’s GuideChapter 11 Firewall 229• The third row is (still) the firewall’s default policy of allowing all traffic from the LAN

Página 146 - 146 Chapter 7 Bridge Screens

ZyWALL 5/35/70 Series User’s GuideTable of Contents 2328.1.2 ALG and the Firewall ...

Página 147 - CHAPTER 8

ZyWALL 5/35/70 Series User’s Guide230 Chapter 11 FirewallFigure 114 Using IP Alias to Solve the Triangle Route Problem11.7 Firewall Default Rule (R

Página 148 - 8.4.1 Least Load First

ZyWALL 5/35/70 Series User’s GuideChapter 11 Firewall 231The following table describes the labels in this screen. Table 66 SECURITY > FIREWALL &g

Página 149 - 8.4.1.2 Example 2

ZyWALL 5/35/70 Series User’s Guide232 Chapter 11 Firewall11.8 Firewall Default Rule (Bridge Mode) Click SECURITY > FIREWALL to open the Default R

Página 150 - 8.4.3 Spillover

ZyWALL 5/35/70 Series User’s GuideChapter 11 Firewall 233The following table describes the labels in this screen. Table 67 SECURITY > FIREWALL

Página 151 - 8.6 WAN General

ZyWALL 5/35/70 Series User’s Guide234 Chapter 11 Firewall11.9 Firewall Rule Summary Click SECURITY > FIREWALL > Rule Summary to open the screen

Página 152 - 152 Chapter 8 WAN Screens

ZyWALL 5/35/70 Series User’s GuideChapter 11 Firewall 23511.9.1 Firewall Edit Rule Follow these directions to create a new rule.1 In the Rule Sum

Página 153 - Chapter 8 WAN Screens 153

ZyWALL 5/35/70 Series User’s Guide236 Chapter 11 FirewallFigure 118 SECURITY > FIREWALL > Rule Summary > Edit

Página 154 - 154 Chapter 8 WAN Screens

ZyWALL 5/35/70 Series User’s GuideChapter 11 Firewall 237The following table describes the labels in this screen. Table 69 SECURITY > FIREWALL

Página 155 - 8.7.1 Least Load First

ZyWALL 5/35/70 Series User’s Guide238 Chapter 11 Firewall11.10 Anti-Probing Click SECURITY > FIREWALL > Anti-Probing to open the following s

Página 156 - 8.7.2 Weighted Round Robin

ZyWALL 5/35/70 Series User’s GuideChapter 11 Firewall 239The following table describes the labels in this screen. 11.11 Firewall Thresholds For Do

Página 157 - 8.8 WAN Route

ZyWALL 5/35/70 Series User’s Guide24 Table of Contents31.5.2 Time Server Synchronization ...

Página 158 - 158 Chapter 8 WAN Screens

ZyWALL 5/35/70 Series User’s Guide240 Chapter 11 Firewall11.11.1 Threshold ValuesIf everything is working properly, you probably do not need to chang

Página 159 - Chapter 8 WAN Screens 159

ZyWALL 5/35/70 Series User’s GuideChapter 11 Firewall 241The following table describes the labels in this screen. Table 71 SECURITY > FIREWALL &g

Página 160 - 8.12 WAN

ZyWALL 5/35/70 Series User’s Guide242 Chapter 11 Firewall11.13 Service Click SECURITY > FIREWALL > Service to open the screen as shown next. Us

Página 161 - Chapter 8 WAN Screens 161

ZyWALL 5/35/70 Series User’s GuideChapter 11 Firewall 243Figure 122 SECURITY > FIREWALL > ServiceThe following table describes the labels in t

Página 162 - 162 Chapter 8 WAN Screens

ZyWALL 5/35/70 Series User’s Guide244 Chapter 11 Firewall11.13.1 Firewall Edit Custom Service Click SECURITY > FIREWALL > Service > Add to d

Página 163 - 8.12.2 PPPoE Encapsulation

ZyWALL 5/35/70 Series User’s GuideChapter 11 Firewall 24511.14 My Service Firewall Rule ExampleThe following Internet firewall rule example allows a

Página 164 - 164 Chapter 8 WAN Screens

ZyWALL 5/35/70 Series User’s Guide246 Chapter 11 FirewallFigure 125 My Service Firewall Rule Example: Edit Custom Service 3 Click Rule Summary. Sele

Página 165 - Chapter 8 WAN Screens 165

ZyWALL 5/35/70 Series User’s GuideChapter 11 Firewall 247Figure 127 My Service Firewall Rule Example: Rule Edit 9 In the Edit Rule screen, use the a

Página 166 - 8.12.3 PPTP Encapsulation

ZyWALL 5/35/70 Series User’s Guide248 Chapter 11 FirewallFigure 128 My Service Firewall Rule Example: Rule ConfigurationRule 1 allows a My Service c

Página 167 - Chapter 8 WAN Screens 167

ZyWALL 5/35/70 Series User’s GuideChapter 11 Firewall 249Figure 129 My Service Firewall Rule Example: Rule Summary

Página 168 - 168 Chapter 8 WAN Screens

ZyWALL 5/35/70 Series User’s GuideTable of Contents 25Chapter 35LAN Setup...

Página 169 - Chapter 8 WAN Screens 169

ZyWALL 5/35/70 Series User’s Guide250 Chapter 11 Firewall

Página 170 - 8.13 Traffic Redirect

ZyWALL 5/35/70 Series User’s GuideChapter 12 Intrusion Detection and Prevention (IDP) 251CHAPTER 12Intrusion Detection andPrevention (IDP)This chapter

Página 171 - 8.15 Configuring Dial Backup

ZyWALL 5/35/70 Series User’s Guide252 Chapter 12 Intrusion Detection and Prevention (IDP)Firewalls are usually deployed at the network edge. However,

Página 172 - 172 Chapter 8 WAN Screens

ZyWALL 5/35/70 Series User’s GuideChapter 12 Intrusion Detection and Prevention (IDP) 25312.1.5 Example IntrusionsThe following are some examples of

Página 173 - Chapter 8 WAN Screens 173

ZyWALL 5/35/70 Series User’s Guide254 Chapter 12 Intrusion Detection and Prevention (IDP)12.1.5.4 MyDoomMyDoom W32.Mydoom.A@mm (also known as W32.Nov

Página 174 - 174 Chapter 8 WAN Screens

ZyWALL 5/35/70 Series User’s GuideChapter 13 Configuring IDP 255CHAPTER 13Configuring IDPThis chapter shows you how to configure IDP on the ZyWALL. 13

Página 175 - 8.16 Advanced Modem Setup

ZyWALL 5/35/70 Series User’s Guide256 Chapter 13 Configuring IDP13.2 General SetupUse this screen to enable IDP on the ZyWALL and choose what traffic

Página 176 - 176 Chapter 8 WAN Screens

ZyWALL 5/35/70 Series User’s GuideChapter 13 Configuring IDP 25713.3 IDP SignaturesThe rules that define how to identify and respond to intrusions ar

Página 177 - Chapter 8 WAN Screens 177

ZyWALL 5/35/70 Series User’s Guide258 Chapter 13 Configuring IDPTo see signatures listed by intrusion type supported by the ZyWALL, select that type f

Página 178 - 178 Chapter 8 WAN Screens

ZyWALL 5/35/70 Series User’s GuideChapter 13 Configuring IDP 25913.3.2 Intrusion SeverityIntrusions are assigned a severity level based on the follow

Página 179 - CHAPTER 9

ZyWALL 5/35/70 Series User’s Guide26 Table of Contents40.3 Remote Node Profile Setup ...

Página 180 - DMZ are on separate subnets

ZyWALL 5/35/70 Series User’s Guide260 Chapter 13 Configuring IDPFigure 134 SECURITY > IDP > Signature: Actions The following table describes s

Página 181 - Chapter 9 DMZ Screens 181

ZyWALL 5/35/70 Series User’s GuideChapter 13 Configuring IDP 261Figure 135 SECURITY > IDP > Signature: Group ViewThe following table describes

Página 182 - 9.3 DMZ Static DHCP

ZyWALL 5/35/70 Series User’s Guide262 Chapter 13 Configuring IDP13.3.5 Query View Click IDP > Signature to see the ZyWALL’s “group view” signature

Página 183 - 9.4 DMZ IP Alias

ZyWALL 5/35/70 Series User’s GuideChapter 13 Configuring IDP 263Figure 136 SECURITY > IDP > Signature: Query ViewThe following table describes

Página 184 - 184 Chapter 9 DMZ Screens

ZyWALL 5/35/70 Series User’s Guide264 Chapter 13 Configuring IDPSearch Click this button to begin the search. The results display at the bottom of the

Página 185 - Chapter 9 DMZ Screens 185

ZyWALL 5/35/70 Series User’s GuideChapter 13 Configuring IDP 26513.3.5.1 Query Example 11 From the “group view” signature screen, click the Switch to

Página 186 - 186 Chapter 9 DMZ Screens

ZyWALL 5/35/70 Series User’s Guide266 Chapter 13 Configuring IDPFigure 138 SECURITY > IDP > Signature: Query by Complete ID13.3.5.2 Query Exa

Página 187 - 9.7 DMZ Port Roles

ZyWALL 5/35/70 Series User’s GuideChapter 13 Configuring IDP 267Figure 139 Signature Query by Attribute. 13.4 Update The ZyWALL comes with built-in

Página 188 - 188 Chapter 9 DMZ Screens

ZyWALL 5/35/70 Series User’s Guide268 Chapter 13 Configuring IDP13.4.2 Configuring IDP UpdateWhen scheduling signature updates, you should choose a d

Página 189 - CHAPTER 10

ZyWALL 5/35/70 Series User’s GuideChapter 13 Configuring IDP 26913.5 Backup and RestoreYou can change the pre-defined Active, Log, Alert and/or Actio

Página 190

ZyWALL 5/35/70 Series User’s GuideTable of Contents 2744.2 Configuring a Filter Set ...

Página 191 - Chapter 10 Wireless LAN 191

ZyWALL 5/35/70 Series User’s Guide270 Chapter 13 Configuring IDPFigure 141 SECURITY > IDP > Backup & RestoreUse the Backup & Restore s

Página 192 - 10.3 WLAN Static DHCP

ZyWALL 5/35/70 Series User’s GuideChapter 14 Anti-Virus 271CHAPTER 14Anti-VirusThis chapter introduces and shows you how to configure the anti-virus s

Página 193 - 10.4 WLAN IP Alias

ZyWALL 5/35/70 Series User’s Guide272 Chapter 14 Anti-Virus2 The virus spreads to other files and programs on the computer. 3 The infected files are u

Página 194 - 194 Chapter 10 Wireless LAN

ZyWALL 5/35/70 Series User’s GuideChapter 14 Anti-Virus 27314.2.1 How the ZyWALL Anti-Virus Scanner WorksThe ZyWALL checks traffic going in the dire

Página 195 - 10.5 WLAN Port Roles

ZyWALL 5/35/70 Series User’s Guide274 Chapter 14 Anti-VirusNote: Turn the ZyWALL off before you install or remove the ZyWALL Turbo card. Note: The Zy

Página 196 - 196 Chapter 10 Wireless LAN

ZyWALL 5/35/70 Series User’s GuideChapter 14 Anti-Virus 275Figure 143 SECURITY > ANTI-VIRUS > General The following table describes the labels

Página 197 - 10.6 Wireless Security

ZyWALL 5/35/70 Series User’s Guide276 Chapter 14 Anti-Virus14.4 Signature SearchingClick SECURITY > ANTI-VIRUS > Signature to display this scre

Página 198 - 10.6.2 Authentication

ZyWALL 5/35/70 Series User’s GuideChapter 14 Anti-Virus 277Figure 144 SECURITY > ANTI-VIRUS > Signature: Query ViewThe following table describ

Página 199 - 10.8 WEP Encryption

ZyWALL 5/35/70 Series User’s Guide278 Chapter 14 Anti-Virus14.4.1 Signature Search ExampleThis example shows a search for signatures that are enabled

Página 200 - 10.9 802.1x Overview

ZyWALL 5/35/70 Series User’s GuideChapter 14 Anti-Virus 279Figure 145 Query Example Search Criteria

Página 201 - Chapter 10 Wireless LAN 201

ZyWALL 5/35/70 Series User’s Guide28 Table of Contents47.3.4 GUI-based FTP Clients ...

Página 202 - 10.11 Introduction to WPA

ZyWALL 5/35/70 Series User’s Guide280 Chapter 14 Anti-VirusFigure 146 Query Example Search Results

Página 203 - Chapter 10 Wireless LAN 203

ZyWALL 5/35/70 Series User’s GuideChapter 14 Anti-Virus 28114.5 Signature Update The ZyWALL comes with built-in signatures created by the ZyXEL Secu

Página 204 - 10.13 Introduction to RADIUS

ZyWALL 5/35/70 Series User’s Guide282 Chapter 14 Anti-VirusFigure 147 SECURITY > ANTI-VIRUS > UpdateThe following table describes the labels i

Página 205 - 10.16 Wireless Card

ZyWALL 5/35/70 Series User’s GuideChapter 14 Anti-Virus 28314.6 Backup and Restore Click ANTI-VIRUS > Backup & Restore. The screen displays a

Página 206 - 206 Chapter 10 Wireless LAN

ZyWALL 5/35/70 Series User’s Guide284 Chapter 14 Anti-VirusUse the Backup & Restore screen to:• Back up anti-virus signatures with your custom con

Página 207 - 10.16.1 Static WEP

ZyWALL 5/35/70 Series User’s GuideChapter 15 Anti-Spam 285CHAPTER 15Anti-SpamThis chapter covers how to use the ZyWALL’s anti-spam feature to deal wit

Página 208 - 10.16.2 WPA-PSK

ZyWALL 5/35/70 Series User’s Guide286 Chapter 15 Anti-Spam15.1.1.1 SpamBulk EngineThe e-mail fingerprint ID that the ZyWALL generates and sends to th

Página 209 - Chapter 10 Wireless LAN 209

ZyWALL 5/35/70 Series User’s GuideChapter 15 Anti-Spam 28715.1.1.4 SpamTricks EngineThe SpamTricks engine checks for the tactics that spammers use to

Página 210 - 10.16.3 WPA

ZyWALL 5/35/70 Series User’s Guide288 Chapter 15 Anti-SpamThe anti-spam external database checks for spoofing of e-mail attributes (like the IP addres

Página 211 - Chapter 10 Wireless LAN 211

ZyWALL 5/35/70 Series User’s GuideChapter 15 Anti-Spam 28915.1.7 MIME HeadersMIME (Multipurpose Internet Mail Extensions) allows varied media types t

Página 212 - 212 Chapter 10 Wireless LAN

ZyWALL 5/35/70 Series User’s GuideTable of Contents 2950.3 IP Policy Routing Example ...

Página 213 - Chapter 10 Wireless LAN 213

ZyWALL 5/35/70 Series User’s Guide290 Chapter 15 Anti-SpamFigure 150 SECURITY > ANTI-SPAM > GeneralThe following table describes the labels in

Página 214 - 10.16.6 IEEE 802.1x + No WEP

ZyWALL 5/35/70 Series User’s GuideChapter 15 Anti-Spam 291From, To Select the directions of travel of packets that you want to check. Select or clear

Página 215 - Chapter 10 Wireless LAN 215

ZyWALL 5/35/70 Series User’s Guide292 Chapter 15 Anti-Spam15.3 Anti-Spam External DB Screen Click SECURITY > ANTI-SPAM > External DB to dis

Página 216 - 216 Chapter 10 Wireless LAN

ZyWALL 5/35/70 Series User’s GuideChapter 15 Anti-Spam 293The following table describes the labels in this screen. Table 85 SECURITY > ANTI-SPAM

Página 217 - 10.17 MAC Filter

ZyWALL 5/35/70 Series User’s Guide294 Chapter 15 Anti-Spam15.4 Anti-Spam Lists Screen Click SECURITY > ANTI-SPAM > Lists to display the Anti-S

Página 218 - 218 Chapter 10 Wireless LAN

ZyWALL 5/35/70 Series User’s GuideChapter 15 Anti-Spam 295Figure 152 SECURITY > ANTI-SPAM > ListsThe following table describes the labels in t

Página 219 - CHAPTER 11

ZyWALL 5/35/70 Series User’s Guide296 Chapter 15 Anti-Spam15.5 Anti-Spam Lists Edit Screen Click SECURITY > ANTI-SPAM > Lists to display the

Página 220 - 11.2 Packet Direction Matrix

ZyWALL 5/35/70 Series User’s GuideChapter 15 Anti-Spam 297Figure 153 SECURITY > ANTI-SPAM > Lists > Edit The following table describes the

Página 221 - Chapter 11 Firewall 221

ZyWALL 5/35/70 Series User’s Guide298 Chapter 15 Anti-SpamE-Mail Address This field displays when you select the E-Mail type. Enter an e-mail address

Página 222 - 222 Chapter 11 Firewall

ZyWALL 5/35/70 Series User’s GuideChapter 16 Content Filtering Screens 299CHAPTER 16Content Filtering ScreensThis chapter provides an overview of cont

Página 223 - Chapter 11 Firewall 223

ZyWALL 5/35/70 Series User’s GuideCopyright 3CopyrightCopyright © 2006 by ZyXEL Communications Corporation.The contents of this publication may not be

Página 224 - 224 Chapter 11 Firewall

ZyWALL 5/35/70 Series User’s Guide30 Table of ContentsImporting Certificates...

Página 225 - Chapter 11 Firewall 225

ZyWALL 5/35/70 Series User’s Guide300 Chapter 16 Content Filtering ScreensFigure 154 SECURITY > CONTENT FILTER > GeneralThe following table de

Página 226 - 11.4 Security Considerations

ZyWALL 5/35/70 Series User’s GuideChapter 16 Content Filtering Screens 301Restrict Web Features Select the check box(es) to restrict a feature. When

Página 227 - 11.5 Firewall Rules Example

ZyWALL 5/35/70 Series User’s Guide302 Chapter 16 Content Filtering Screens16.3 Content Filtering with an External DatabaseWhen you register for and e

Página 228 - 228 Chapter 11 Firewall

ZyWALL 5/35/70 Series User’s GuideChapter 16 Content Filtering Screens 3035 The external content filtering server sends the category information back

Página 229 - 11.6 Asymmetrical Routes

ZyWALL 5/35/70 Series User’s Guide304 Chapter 16 Content Filtering ScreensFigure 156 SECURITY > CONTENT FILTER > CategoriesThe following table

Página 230 - 230 Chapter 11 Firewall

ZyWALL 5/35/70 Series User’s GuideChapter 16 Content Filtering Screens 305Unrated Web Pages Select Block to prevent users from accessing web pages tha

Página 231 - Chapter 11 Firewall 231

ZyWALL 5/35/70 Series User’s Guide306 Chapter 16 Content Filtering ScreensNudity Selecting this category excludes pages containing nude or seminude de

Página 232 - 232 Chapter 11 Firewall

ZyWALL 5/35/70 Series User’s GuideChapter 16 Content Filtering Screens 307Illegal Drugs Selecting this category excludes pages that promote, offer, se

Página 233 - (VPN pass-through traffic)

ZyWALL 5/35/70 Series User’s Guide308 Chapter 16 Content Filtering ScreensWeb Communications Selecting this category excludes pages that allow or offe

Página 234 - 11.9 Firewall Rule Summary

ZyWALL 5/35/70 Series User’s GuideChapter 16 Content Filtering Screens 309Vehicles Selecting this category excludes pages that provide information on

Página 235 - Chapter 11 Firewall 235

ZyWALL 5/35/70 Series User’s GuideList of Figures 31List of FiguresFigure 1 Secure Internet Access via Cable, DSL or Wireless Modem ...

Página 236 - 236 Chapter 11 Firewall

ZyWALL 5/35/70 Series User’s Guide310 Chapter 16 Content Filtering Screens16.5 Content Filter Customization Click SECURITY > CONTENT FILTER >

Página 237 - Chapter 11 Firewall 237

ZyWALL 5/35/70 Series User’s GuideChapter 16 Content Filtering Screens 311The following table describes the labels in this screen. Table 90 SECURITY

Página 238 - 11.10 Anti-Probing

ZyWALL 5/35/70 Series User’s Guide312 Chapter 16 Content Filtering Screens16.6 Customizing Keyword Blocking URL CheckingYou can use commands to set h

Página 239 - 11.11 Firewall Thresholds

ZyWALL 5/35/70 Series User’s GuideChapter 16 Content Filtering Screens 313Use the ip urlfilter customize actionFlags 8 [disable | enable] command to e

Página 240 - 11.12 Threshold Screen

ZyWALL 5/35/70 Series User’s Guide314 Chapter 16 Content Filtering ScreensThe following table describes the labels in this screen. Table 91 SECURI

Página 241 - Chapter 11 Firewall 241

ZyWALL 5/35/70 Series User’s GuideChapter 17 Content Filtering Reports 315CHAPTER 17Content Filtering ReportsThis chapter describes how to view conten

Página 242 - 11.13 Service

ZyWALL 5/35/70 Series User’s Guide316 Chapter 17 Content Filtering ReportsFigure 159 myZyXEL.com: Login3 A welcome screen displays. Click your ZyWAL

Página 243 - Chapter 11 Firewall 243

ZyWALL 5/35/70 Series User’s GuideChapter 17 Content Filtering Reports 317Figure 161 myZyXEL.com: Service Management5 Enter your ZyXEL device's

Página 244 - 244 Chapter 11 Firewall

ZyWALL 5/35/70 Series User’s Guide318 Chapter 17 Content Filtering ReportsFigure 163 Content Filtering Reports Main Screen8 Select items under Globa

Página 245 - Chapter 11 Firewall 245

ZyWALL 5/35/70 Series User’s GuideChapter 17 Content Filtering Reports 319Figure 165 Global Report Screen Example11You can click a category in the C

Página 246 - 246 Chapter 11 Firewall

ZyWALL 5/35/70 Series User’s Guide32 List of FiguresFigure 39 Firewall Rule for VPN ...

Página 247 - Chapter 11 Firewall 247

ZyWALL 5/35/70 Series User’s Guide320 Chapter 17 Content Filtering ReportsFigure 166 Requested URLs Example17.3 Web Site SubmissionYou may find tha

Página 248 - 10.0.0.15 on the LAN

ZyWALL 5/35/70 Series User’s GuideChapter 17 Content Filtering Reports 321Figure 167 Web Page Review Process Screen3 Type the web site’s URL in the

Página 249 - Chapter 11 Firewall 249

ZyWALL 5/35/70 Series User’s Guide322 Chapter 17 Content Filtering Reports

Página 250 - 250 Chapter 11 Firewall

ZyWALL 5/35/70 Series User’s GuideChapter 18 IPSec VPN 323CHAPTER 18IPSec VPNThis chapter explains how to set up and maintain IPSec VPNs in the ZyWALL

Página 251 - CHAPTER 12

ZyWALL 5/35/70 Series User’s Guide324 Chapter 18 IPSec VPNA VPN tunnel is usually established in two phases. Each phase establishes a security associa

Página 252 - 12.1.4 Network IDP

ZyWALL 5/35/70 Series User’s GuideChapter 18 IPSec VPN 325You can usually provide a static IP address or a domain name for the ZyWALL. Sometimes, your

Página 253 - 12.1.5 Example Intrusions

ZyWALL 5/35/70 Series User’s Guide326 Chapter 18 IPSec VPNFigure 172 SECURITY > VPN > VPN Rules (IKE) The following table describes the label

Página 254 - 12.1.6 ZyWALL IDP

ZyWALL 5/35/70 Series User’s GuideChapter 18 IPSec VPN 32718.3 IKE SA Setup This section provides more details about IKE SAs.18.3.1 IKE SA Proposa

Página 255 - CHAPTER 13

ZyWALL 5/35/70 Series User’s Guide328 Chapter 18 IPSec VPNSee the field descriptions for information about specific encryption algorithms, authenticat

Página 256 - 13.2 General Setup

ZyWALL 5/35/70 Series User’s GuideChapter 18 IPSec VPN 329Router identity consists of ID type and ID content. The ID type can be IP address, domain na

Página 257 - 13.3 IDP Signatures

ZyWALL 5/35/70 Series User’s GuideList of Figures 33Figure 82 DMZ Private and Public Address Example ...

Página 258 - Attack Type list box

ZyWALL 5/35/70 Series User’s Guide330 Chapter 18 IPSec VPN• The local ID type and ID content come from the certificate. On the ZyWALL, you simply sele

Página 259 - 13.3.3 Signature Actions

ZyWALL 5/35/70 Series User’s GuideChapter 18 IPSec VPN 331Step 2: The remote IPSec router selects an acceptable proposal and sends it back to the ZyWA

Página 260

ZyWALL 5/35/70 Series User’s Guide332 Chapter 18 IPSec VPN18.4 Additional IPSec VPN TopicsThis section discusses other IPSec VPN topics that apply to

Página 261

ZyWALL 5/35/70 Series User’s GuideChapter 18 IPSec VPN 333Figure 177 IPSec High AvailabilityWhen setting up a IPSec high availability VPN tunnel, th

Página 262 - 13.3.5 Query View

ZyWALL 5/35/70 Series User’s Guide334 Chapter 18 IPSec VPN18.5 VPN Rules (IKE) Gateway Policy Edit In the VPN Rule (IKE) screen, click the add gatew

Página 263

ZyWALL 5/35/70 Series User’s GuideChapter 18 IPSec VPN 335Figure 178 SECURITY > VPN > VPN Rules (IKE) > Edit Gateway Policy

Página 264

ZyWALL 5/35/70 Series User’s Guide336 Chapter 18 IPSec VPNThe following table describes the labels in this screen. Table 95 SECURITY > VPN > V

Página 265 - 13.3.5.1 Query Example 1

ZyWALL 5/35/70 Series User’s GuideChapter 18 IPSec VPN 337Fall back to Primary Remote Gateway when possibleSelect this to have the ZyWALL change back

Página 266 - 13.3.5.2 Query Example 2

ZyWALL 5/35/70 Series User’s Guide338 Chapter 18 IPSec VPNPeer ID Type Select from the following when you set Authentication Key to Pre-shared Key.Sel

Página 267 - 13.4 Update

ZyWALL 5/35/70 Series User’s GuideChapter 18 IPSec VPN 339Server Mode Select Server Mode to have this ZyWALL authenticate extended authentication clie

Página 268

ZyWALL 5/35/70 Series User’s Guide34 List of FiguresFigure 125 My Service Firewall Rule Example: Edit Custom Service ...

Página 269 - 13.5 Backup and Restore

ZyWALL 5/35/70 Series User’s Guide340 Chapter 18 IPSec VPN18.6 IPSec SA Overview Once the ZyWALL and remote IPSec router have established the IKE

Página 270

ZyWALL 5/35/70 Series User’s GuideChapter 18 IPSec VPN 341Usually, you should select ESP. AH does not support encryption, and ESP is more suitable wit

Página 271 - CHAPTER 14

ZyWALL 5/35/70 Series User’s Guide342 Chapter 18 IPSec VPNIf you enable PFS, the ZyWALL and remote IPSec router perform a DH key exchange every time a

Página 272 - 272 Chapter 14 Anti-Virus

ZyWALL 5/35/70 Series User’s GuideChapter 18 IPSec VPN 343Figure 180 SECURITY > VPN > VPN Rules (IKE) > Edit Network Policy

Página 273 - Chapter 14 Anti-Virus 273

ZyWALL 5/35/70 Series User’s Guide344 Chapter 18 IPSec VPNThe following table describes the labels in this screen. Table 96 SECURITY > VPN > V

Página 274 - 274 Chapter 14 Anti-Virus

ZyWALL 5/35/70 Series User’s GuideChapter 18 IPSec VPN 345Starting IP Address When the Address Type field is configured to Single Address, enter a (st

Página 275 - Chapter 14 Anti-Virus 275

ZyWALL 5/35/70 Series User’s Guide346 Chapter 18 IPSec VPN18.8 VPN Rules (IKE): Network Policy Move Click the move ( ) icon in the VPN Rules (IKE)

Página 276 - 14.4 Signature Searching

ZyWALL 5/35/70 Series User’s GuideChapter 18 IPSec VPN 347• The gateway policy contains the IKE SA settings. It identifies the IPSec routers at either

Página 277 - Chapter 14 Anti-Virus 277

ZyWALL 5/35/70 Series User’s Guide348 Chapter 18 IPSec VPN18.9 IPSec SA Using Manual Keys You might set up an IPSec SA using manual keys when you

Página 278 - 278 Chapter 14 Anti-Virus

ZyWALL 5/35/70 Series User’s GuideChapter 18 IPSec VPN 349Figure 182 SECURITY > VPN > VPN Rules (Manual) The following table describes the lab

Página 279 - Chapter 14 Anti-Virus 279

ZyWALL 5/35/70 Series User’s GuideList of Figures 35Figure 168 VPN: Example ...

Página 280 - 280 Chapter 14 Anti-Virus

ZyWALL 5/35/70 Series User’s Guide350 Chapter 18 IPSec VPN18.11 VPN Rules (Manual): Edit Click the edit icon on the VPN Rules (Manual) screen to op

Página 281 - 14.5 Signature Update

ZyWALL 5/35/70 Series User’s GuideChapter 18 IPSec VPN 351The following table describes the labels in this screen. Table 99 SECURITY > VPN > V

Página 282 - 282 Chapter 14 Anti-Virus

ZyWALL 5/35/70 Series User’s Guide352 Chapter 18 IPSec VPNEnding IP Address/Subnet MaskWhen the Address Type field is configured to Single Address, th

Página 283 - 14.6 Backup and Restore

ZyWALL 5/35/70 Series User’s GuideChapter 18 IPSec VPN 35318.12 VPN SA Monitor In the web configurator, click SECURITY > VPN > SA Monitor. Use

Página 284 - 284 Chapter 14 Anti-Virus

ZyWALL 5/35/70 Series User’s Guide354 Chapter 18 IPSec VPN18.13 VPN Global Setting Click SECURITY > VPN > Global Setting to open the VPN Global

Página 285 - CHAPTER 15

ZyWALL 5/35/70 Series User’s GuideChapter 18 IPSec VPN 35518.14 Telecommuter VPN/IPSec ExamplesThe following examples show how multiple telecommuters

Página 286 - 15.1.1.3 SpamContent Engine

ZyWALL 5/35/70 Series User’s Guide356 Chapter 18 IPSec VPNFigure 186 Telecommuters Sharing One VPN Rule Example18.14.2 Telecommuters Using Unique V

Página 287 - 15.1.3 Phishing

ZyWALL 5/35/70 Series User’s GuideChapter 18 IPSec VPN 357The ZyWALL at headquarters can also initiate VPN connections to the telecommuters since it c

Página 288 - 15.1.6 SMTP and POP3

ZyWALL 5/35/70 Series User’s Guide358 Chapter 18 IPSec VPN18.15 VPN and Remote ManagementYou can allow someone to use a service (like Telnet or HTTP)

Página 289 - 15.1.7 MIME Headers

ZyWALL 5/35/70 Series User’s GuideChapter 18 IPSec VPN 359Figure 189 VPN TopologiesHub-and-spoke VPN reduces the number of VPN connections that you

Página 290 - 290 Chapter 15 Anti-Spam

ZyWALL 5/35/70 Series User’s Guide36 List of FiguresFigure 211 NAT Application With IP Alias ...

Página 291 - Chapter 15 Anti-Spam 291

ZyWALL 5/35/70 Series User’s Guide360 Chapter 18 IPSec VPNFigure 190 Hub-and-spoke VPN Example18.16.2 Hub-and-spoke Example VPN Rule AddressesThe V

Página 292 - 292 Chapter 15 Anti-Spam

ZyWALL 5/35/70 Series User’s GuideChapter 18 IPSec VPN 36118.16.3 Hub-and-spoke VPN Requirements and SuggestionsConsider the following when implement

Página 293 - Chapter 15 Anti-Spam 293

ZyWALL 5/35/70 Series User’s Guide362 Chapter 18 IPSec VPN

Página 294 - 294 Chapter 15 Anti-Spam

ZyWALL 5/35/70 Series User’s GuideChapter 19 Certificates 363CHAPTER 19CertificatesThis chapter gives background information about public-key certific

Página 295 - Chapter 15 Anti-Spam 295

ZyWALL 5/35/70 Series User’s Guide364 Chapter 19 CertificatesCertification authorities maintain directory servers with databases of valid and revoked

Página 296 - 296 Chapter 15 Anti-Spam

ZyWALL 5/35/70 Series User’s GuideChapter 19 Certificates 365Figure 192 Certificate Details 4 Use a secure method to verify that the certificate own

Página 297 - Chapter 15 Anti-Spam 297

ZyWALL 5/35/70 Series User’s Guide366 Chapter 19 CertificatesUse the Directory Servers screen to configure a list of addresses of directory servers (t

Página 298 - 298 Chapter 15 Anti-Spam

ZyWALL 5/35/70 Series User’s GuideChapter 19 Certificates 367Type This field displays what kind of certificate this is. REQ represents a certification

Página 299 - CHAPTER 16

ZyWALL 5/35/70 Series User’s Guide368 Chapter 19 Certificates19.6 My Certificate Details Click SECURITY > CERTIFICATES > My Certificates to op

Página 300

ZyWALL 5/35/70 Series User’s GuideChapter 19 Certificates 369The following table describes the labels in this screen. Table 105 SECURITY > CERTI

Página 301

ZyWALL 5/35/70 Series User’s GuideList of Figures 37Figure 254 Secure FTP: Firmware Upload Example ...

Página 302

ZyWALL 5/35/70 Series User’s Guide370 Chapter 19 Certificates19.7 My Certificate Export Click SECURITY > CERTIFICATES > My Certificates and th

Página 303

ZyWALL 5/35/70 Series User’s GuideChapter 19 Certificates 371Figure 196 SECURITY > CERTIFICATES > My Certificates > ExportThe following tab

Página 304

ZyWALL 5/35/70 Series User’s Guide372 Chapter 19 CertificatesNote: You can only import a certificate that matches a corresponding certification reques

Página 305

ZyWALL 5/35/70 Series User’s GuideChapter 19 Certificates 373Figure 197 SECURITY > CERTIFICATES > My Certificates > ImportThe following tab

Página 306

ZyWALL 5/35/70 Series User’s Guide374 Chapter 19 CertificatesThe following table describes the labels in this screen. 19.9 My Certificate Create Cli

Página 307

ZyWALL 5/35/70 Series User’s GuideChapter 19 Certificates 375The following table describes the labels in this screen. Table 109 SECURITY > CERTIF

Página 308

ZyWALL 5/35/70 Series User’s Guide376 Chapter 19 CertificatesAfter you click Apply in the My Certificate Create screen, you see a screen that tells yo

Página 309

ZyWALL 5/35/70 Series User’s GuideChapter 19 Certificates 377Figure 200 SECURITY > CERTIFICATES > Trusted CAsThe following table describes the

Página 310 - FILTER Customization screen

ZyWALL 5/35/70 Series User’s Guide378 Chapter 19 Certificates19.11 Trusted CA Details Click SECURITY > CERTIFICATES > Trusted CAs to open the

Página 311

ZyWALL 5/35/70 Series User’s GuideChapter 19 Certificates 379Figure 201 SECURITY > CERTIFICATES > Trusted CAs > DetailsThe following table

Página 312

ZyWALL 5/35/70 Series User’s Guide38 List of FiguresFigure 297 Firmware Upload Error ...

Página 313

ZyWALL 5/35/70 Series User’s Guide380 Chapter 19 CertificatesCertification Path Click the Refresh button to have this read-only text box display the e

Página 314

ZyWALL 5/35/70 Series User’s GuideChapter 19 Certificates 38119.12 Trusted CA Import Click SECURITY > CERTIFICATES > Trusted CAs to open the

Página 315 - CHAPTER 17

ZyWALL 5/35/70 Series User’s Guide382 Chapter 19 CertificatesFigure 202 SECURITY > CERTIFICATES > Trusted CAs > ImportThe following table d

Página 316

ZyWALL 5/35/70 Series User’s GuideChapter 19 Certificates 383Figure 203 SECURITY > CERTIFICATES > Trusted Remote HostsThe following table desc

Página 317 - 6 Click Submit

ZyWALL 5/35/70 Series User’s Guide384 Chapter 19 Certificates19.14 Trusted Remote Hosts Import Click SECURITY > CERTIFICATES > Trusted Remote

Página 318

ZyWALL 5/35/70 Series User’s GuideChapter 19 Certificates 385The following table describes the labels in this screen. 19.15 Trusted Remote Host Certi

Página 319

ZyWALL 5/35/70 Series User’s Guide386 Chapter 19 CertificatesFigure 205 SECURITY > CERTIFICATES > Trusted Remote Hosts > DetailsThe followi

Página 320 - 17.3 Web Site Submission

ZyWALL 5/35/70 Series User’s GuideChapter 19 Certificates 387Type This field displays general information about the certificate. With trusted remote h

Página 321

ZyWALL 5/35/70 Series User’s Guide388 Chapter 19 Certificates19.16 Directory Servers Click SECURITY > CERTIFICATES > Directory Servers to open

Página 322

ZyWALL 5/35/70 Series User’s GuideChapter 19 Certificates 389The following table describes the labels in this screen. 19.17 Directory Server Add or

Página 323 - CHAPTER 18

ZyWALL 5/35/70 Series User’s GuideList of Figures 39Figure 340 Menu 7.1.1: WLAN MAC Address Filter ...

Página 324 - 18.1.1 IKE SA Overview

ZyWALL 5/35/70 Series User’s Guide390 Chapter 19 CertificatesThe following table describes the labels in this screen. Table 117 SECURITY > CERTIF

Página 325 - 18.2 VPN Rules (IKE)

ZyWALL 5/35/70 Series User’s GuideChapter 20 Authentication Server 391CHAPTER 20Authentication ServerThis chapter discusses how to configure the ZyWAL

Página 326 - 326 Chapter 18 IPSec VPN

ZyWALL 5/35/70 Series User’s Guide392 Chapter 20 Authentication ServerFigure 208 SECURITY > AUTH SERVER > Local User Database

Página 327 - 18.3 IKE SA Setup

ZyWALL 5/35/70 Series User’s GuideChapter 20 Authentication Server 393The following table describes the labels in this screen. 20.3 RADIUS Click

Página 328 - 18.3.1.2 Authentication

ZyWALL 5/35/70 Series User’s Guide394 Chapter 20 Authentication ServerThe following table describes the labels in this screen. Table 119 SECURITY &

Página 329 - Chapter 18 IPSec VPN 329

ZyWALL 5/35/70 Series User’s GuideChapter 21 Network Address Translation (NAT) 395CHAPTER 21Network Address Translation(NAT)This chapter discusses how

Página 330 - 18.3.1.4 Negotiation Mode

ZyWALL 5/35/70 Series User’s Guide396 Chapter 21 Network Address Translation (NAT)21.1.2 What NAT DoesIn the simplest form, NAT changes the source IP

Página 331 - Figure 176 VPN/NAT Example

ZyWALL 5/35/70 Series User’s GuideChapter 21 Network Address Translation (NAT) 39721.1.4 NAT ApplicationThe following figure illustrates a possible N

Página 332 - 18.4.1 SA Life Time

ZyWALL 5/35/70 Series User’s Guide398 Chapter 21 Network Address Translation (NAT)21.1.5 Port Restricted Cone NATZyWALL ZyNOS version 4.00 and later

Página 333 - Chapter 18 IPSec VPN 333

ZyWALL 5/35/70 Series User’s GuideChapter 21 Network Address Translation (NAT) 399• Server: This type allows you to specify inside servers of differen

Página 334 - 334 Chapter 18 IPSec VPN

ZyWALL 5/35/70 Series User’s Guide4 CertificationsCertificationsFederal Communications Commission (FCC) Interference StatementThe device complies with

Página 335 - Chapter 18 IPSec VPN 335

ZyWALL 5/35/70 Series User’s Guide40 List of FiguresFigure 382 Filter Rule Process ...

Página 336 - 336 Chapter 18 IPSec VPN

ZyWALL 5/35/70 Series User’s Guide400 Chapter 21 Network Address Translation (NAT)21.3 NAT Overview Screen Click ADVANCED > NAT to open the NAT O

Página 337 - Chapter 18 IPSec VPN 337

ZyWALL 5/35/70 Series User’s GuideChapter 21 Network Address Translation (NAT) 40121.4 NAT Address Mapping Click ADVANCED > NAT > Address Map

Página 338 - 338 Chapter 18 IPSec VPN

ZyWALL 5/35/70 Series User’s Guide402 Chapter 21 Network Address Translation (NAT)Figure 214 ADVANCED > NAT > Address MappingThe following tab

Página 339 - Chapter 18 IPSec VPN 339

ZyWALL 5/35/70 Series User’s GuideChapter 21 Network Address Translation (NAT) 40321.4.1 NAT Address Mapping Edit Click the Edit button to display t

Página 340 - 18.6 IPSec SA Overview

ZyWALL 5/35/70 Series User’s Guide404 Chapter 21 Network Address Translation (NAT)The following table describes the labels in this screen. 21.5 Port

Página 341 - 18.6.0.3 Encapsulation

ZyWALL 5/35/70 Series User’s GuideChapter 21 Network Address Translation (NAT) 40521.5.1 Default Server IP AddressIn addition to the servers for spec

Página 342 - 342 Chapter 18 IPSec VPN

ZyWALL 5/35/70 Series User’s Guide406 Chapter 21 Network Address Translation (NAT)Figure 216 Multiple Servers Behind NAT Example21.5.4 NAT and Mult

Página 343 - Chapter 18 IPSec VPN 343

ZyWALL 5/35/70 Series User’s GuideChapter 21 Network Address Translation (NAT) 407Figure 217 Port Translation Example21.6 Port Forwarding Screen Cl

Página 344 - 344 Chapter 18 IPSec VPN

ZyWALL 5/35/70 Series User’s Guide408 Chapter 21 Network Address Translation (NAT)Figure 218 ADVANCED > NAT > Port ForwardingThe following tab

Página 345 - Chapter 18 IPSec VPN 345

ZyWALL 5/35/70 Series User’s GuideChapter 21 Network Address Translation (NAT) 40921.7 Port Triggering Some services use a dedicated range of ports

Página 346 - Network Policy Move screen

ZyWALL 5/35/70 Series User’s GuideList of Figures 41Figure 425 Example Xmodem Upload ...

Página 347 - Chapter 18 IPSec VPN 347

ZyWALL 5/35/70 Series User’s Guide410 Chapter 21 Network Address Translation (NAT)4 The ZyWALL forwards the traffic to Jane’s computer IP address. 5 O

Página 348 - 18.10 VPN Rules (Manual)

ZyWALL 5/35/70 Series User’s GuideChapter 21 Network Address Translation (NAT) 411End Port Type a port number or the ending port number in a range of

Página 349 - Chapter 18 IPSec VPN 349

ZyWALL 5/35/70 Series User’s Guide412 Chapter 21 Network Address Translation (NAT)

Página 350 - 350 Chapter 18 IPSec VPN

ZyWALL 5/35/70 Series User’s GuideChapter 22 Static Route 413CHAPTER 22Static RouteThis chapter shows you how to configure static routes for your ZyWA

Página 351 - Chapter 18 IPSec VPN 351

ZyWALL 5/35/70 Series User’s Guide414 Chapter 22 Static RouteFigure 222 ADVANCED > STATIC ROUTE > IP Static RouteThe following table describes

Página 352 - 352 Chapter 18 IPSec VPN

ZyWALL 5/35/70 Series User’s GuideChapter 22 Static Route 41522.2.1 IP Static Route Edit Select a static route index number and click Edit. The scr

Página 353 - 18.12 VPN SA Monitor

ZyWALL 5/35/70 Series User’s Guide416 Chapter 22 Static RouteMetric Metric represents the “cost” of transmission for routing purposes. IP routing uses

Página 354 - 18.13 VPN Global Setting

ZyWALL 5/35/70 Series User’s GuideChapter 23 Policy Route 417CHAPTER 23Policy RouteThis chapter covers setting and applying policies used for IP routi

Página 355 - Chapter 18 IPSec VPN 355

ZyWALL 5/35/70 Series User’s Guide418 Chapter 23 Policy RouteIPPR follows the existing packet filtering facility of RAS in style and in implementation

Página 356 - 356 Chapter 18 IPSec VPN

ZyWALL 5/35/70 Series User’s GuideChapter 23 Policy Route 419The following table describes the labels in this screen. 23.5 Policy Route Edit Click AD

Página 357 - Chapter 18 IPSec VPN 357

ZyWALL 5/35/70 Series User’s Guide42 List of FiguresFigure 468 Macintosh OS 8/9: Apple Menu ...

Página 358 - 18.16 Hub-and-spoke VPN

ZyWALL 5/35/70 Series User’s Guide420 Chapter 23 Policy RouteFigure 225 Edit IP Policy RouteThe following table describes the labels in this screen.

Página 359 - Figure 189 VPN Topologies

ZyWALL 5/35/70 Series User’s GuideChapter 23 Policy Route 421Packet Length Type a length of packet (in bytes). The operators in the Len Compare field

Página 360 - 360 Chapter 18 IPSec VPN

ZyWALL 5/35/70 Series User’s Guide422 Chapter 23 Policy Route

Página 361 - Chapter 18 IPSec VPN 361

ZyWALL 5/35/70 Series User’s GuideChapter 24 Bandwidth Management 423CHAPTER 24Bandwidth ManagementThis chapter describes the functions and configurat

Página 362 - 362 Chapter 18 IPSec VPN

ZyWALL 5/35/70 Series User’s Guide424 Chapter 24 Bandwidth Management24.3 Proportional Bandwidth AllocationBandwidth management allows you to define

Página 363 - CHAPTER 19

ZyWALL 5/35/70 Series User’s GuideChapter 24 Bandwidth Management 42524.6 Application and Subnet-based Bandwidth ManagementYou could also create band

Página 364 - 19.3 Verifying a Certificate

ZyWALL 5/35/70 Series User’s Guide426 Chapter 24 Bandwidth ManagementWhen you enable maximize bandwidth usage, the ZyWALL first makes sure that each b

Página 365 - 19.4 Configuration Summary

ZyWALL 5/35/70 Series User’s GuideChapter 24 Bandwidth Management 42724.7.5.1 Priority-based Allotment of Unused and Unbudgeted BandwidthThe followin

Página 366 - 19.5 My Certificates

ZyWALL 5/35/70 Series User’s Guide428 Chapter 24 Bandwidth Management24.8 Bandwidth BorrowingBandwidth borrowing allows a sub-class to borrow unused

Página 367 - Chapter 19 Certificates 367

ZyWALL 5/35/70 Series User’s GuideChapter 24 Bandwidth Management 429• The Bill class cannot borrow unused bandwidth from the Root class because the S

Página 368 - 368 Chapter 19 Certificates

ZyWALL 5/35/70 Series User’s GuideList of Figures 43Figure 511 Certificate Import Wizard 2 ...

Página 369 - Chapter 19 Certificates 369

ZyWALL 5/35/70 Series User’s Guide430 Chapter 24 Bandwidth ManagementIf you use VoIP and NetMeeting at the same time, the device allocates up to 500 K

Página 370 - 19.7 My Certificate Export

ZyWALL 5/35/70 Series User’s GuideChapter 24 Bandwidth Management 43124.12 Configuring Class Setup The Class Setup screen displays the configured ba

Página 371 - 19.8 My Certificate Import

ZyWALL 5/35/70 Series User’s Guide432 Chapter 24 Bandwidth ManagementFigure 228 ADVANCED > BW MGMT > Class SetupThe following table describes

Página 372 - 372 Chapter 19 Certificates

ZyWALL 5/35/70 Series User’s GuideChapter 24 Bandwidth Management 43324.12.1 Bandwidth Manager Class Configuration Configure a bandwidth management

Página 373 - Chapter 19 Certificates 373

ZyWALL 5/35/70 Series User’s Guide434 Chapter 24 Bandwidth ManagementFigure 229 ADVANCED > BW MGMT > Class Setup > Add Sub-ClassThe followi

Página 374 - 19.9 My Certificate Create

ZyWALL 5/35/70 Series User’s GuideChapter 24 Bandwidth Management 435Enable Bandwidth Filter Select Enable Bandwidth Filter to have the ZyWALL use thi

Página 375 - Chapter 19 Certificates 375

ZyWALL 5/35/70 Series User’s Guide436 Chapter 24 Bandwidth Management24.12.2 Bandwidth Management Statistics Click ADVANCED > BW MGMT > Cl

Página 376 - 19.10 Trusted CAs

ZyWALL 5/35/70 Series User’s GuideChapter 24 Bandwidth Management 437Figure 230 ADVANCED > BW MGMT > Class Setup > Statistics The following

Página 377 - Chapter 19 Certificates 377

ZyWALL 5/35/70 Series User’s Guide438 Chapter 24 Bandwidth ManagementFigure 231 ADVANCED > BW MGMT > Monitor The following table describes the

Página 378 - 19.11 Trusted CA Details

ZyWALL 5/35/70 Series User’s GuideChapter 25 DNS 439CHAPTER 25DNSThis chapter shows you how to configure the DNS screens.25.1 DNS Overview DNS (Doma

Página 379 - Chapter 19 Certificates 379

ZyWALL 5/35/70 Series User’s Guide44 List of Figures

Página 380 - 380 Chapter 19 Certificates

ZyWALL 5/35/70 Series User’s Guide440 Chapter 25 DNS25.4 Address RecordAn address record contains the mapping of a fully qualified domain name (FQDN)

Página 381 - 19.12 Trusted CA Import

ZyWALL 5/35/70 Series User’s GuideChapter 25 DNS 441Figure 232 Private DNS Server ExampleNote: If you do not specify an Intranet DNS server on the r

Página 382 - 382 Chapter 19 Certificates

ZyWALL 5/35/70 Series User’s Guide442 Chapter 25 DNSThe following table describes the labels in this screen.25.6.1 Adding an Address Record Click Ad

Página 383 - Chapter 19 Certificates 383

ZyWALL 5/35/70 Series User’s GuideChapter 25 DNS 443An address record contains the mapping of a fully qualified domain name (FQDN) to an IP address. C

Página 384 - 384 Chapter 19 Certificates

ZyWALL 5/35/70 Series User’s Guide444 Chapter 25 DNSFigure 235 ADVANCED > DNS > Insert (Name Server Record)The following table describes the l

Página 385 - Chapter 19 Certificates 385

ZyWALL 5/35/70 Series User’s GuideChapter 25 DNS 44525.7 DNS Cache DNS cache is the temporary storage area where a router stores responses from DNS

Página 386 - 386 Chapter 19 Certificates

ZyWALL 5/35/70 Series User’s Guide446 Chapter 25 DNSThe following table describes the labels in this screen.25.9 Configuring DNS DHCP Click ADVANCED

Página 387 - Chapter 19 Certificates 387

ZyWALL 5/35/70 Series User’s GuideChapter 25 DNS 447Figure 237 ADVANCED > DNS > DHCPThe following table describes the labels in this screen.LA

Página 388 - 19.16 Directory Servers

ZyWALL 5/35/70 Series User’s Guide448 Chapter 25 DNS25.10 Dynamic DNS Dynamic DNS allows you to update your current dynamic IP address with one or m

Página 389 - Chapter 19 Certificates 389

ZyWALL 5/35/70 Series User’s GuideChapter 25 DNS 449Figure 238 ADVANCED > DNS > DDNSThe following table describes the labels in this screen.LA

Página 390 - 390 Chapter 19 Certificates

ZyWALL 5/35/70 Series User’s GuideList of Tables 45List of TablesTable 1 ZyWALL Model Specific Features ...

Página 391 - CHAPTER 20

ZyWALL 5/35/70 Series User’s Guide450 Chapter 25 DNSIP Address Update PolicySelect Use WAN IP Address to have the ZyWALL update the domain name with t

Página 392

ZyWALL 5/35/70 Series User’s GuideChapter 26 Remote Management 451CHAPTER 26Remote ManagementThis chapter provides information on the Remote Managemen

Página 393 - 20.3 RADIUS

ZyWALL 5/35/70 Series User’s Guide452 Chapter 26 Remote Management2 The IP address in the Secure Client IP Address field does not match the client IP

Página 394

ZyWALL 5/35/70 Series User’s GuideChapter 26 Remote Management 453Figure 239 HTTPS ImplementationNote: If you disable the HTTP service in the REMOTE

Página 395 - CHAPTER 21

ZyWALL 5/35/70 Series User’s Guide454 Chapter 26 Remote ManagementFigure 240 ADVANCED > REMOTE MGMT > WWWThe following table describes the lab

Página 396 - 21.1.3 How NAT Works

ZyWALL 5/35/70 Series User’s GuideChapter 26 Remote Management 45526.4 HTTPS ExampleIf you haven’t changed the default HTTPS port on the ZyWALL, then

Página 397 - 21.1.4 NAT Application

ZyWALL 5/35/70 Series User’s Guide456 Chapter 26 Remote Management26.4.2 Netscape Navigator Warning MessagesWhen you attempt to access the ZyWALL HTT

Página 398 - 21.1.6 NAT Mapping Types

ZyWALL 5/35/70 Series User’s GuideChapter 26 Remote Management 45726.4.3 Avoiding the Browser Warning MessagesThe following describes the main reason

Página 399 - 21.2 Using NAT

ZyWALL 5/35/70 Series User’s Guide458 Chapter 26 Remote ManagementFigure 244 Example: Lock Denoting a Secure ConnectionClick Login and you then see

Página 400 - 21.3 NAT Overview Screen

ZyWALL 5/35/70 Series User’s GuideChapter 26 Remote Management 459Figure 246 Device-specific CertificateClick Ignore in the Replace Certificate scre

Página 401 - 21.4 NAT Address Mapping

ZyWALL 5/35/70 Series User’s Guide46 List of TablesTable 39 Example of Network Properties for LAN Servers with Fixed IP Addresses ... 160Table

Página 402

ZyWALL 5/35/70 Series User’s Guide460 Chapter 26 Remote ManagementFigure 248 SSH Communication Example26.6 How SSH Works The following table summa

Página 403

ZyWALL 5/35/70 Series User’s GuideChapter 26 Remote Management 461After the identification is verified and data encryption activated, a secure tunnel

Página 404 - 21.5 Port Forwarding

ZyWALL 5/35/70 Series User’s Guide462 Chapter 26 Remote ManagementFigure 250 ADVANCED > REMOTE MGMT > SSHThe following table describes the lab

Página 405

ZyWALL 5/35/70 Series User’s GuideChapter 26 Remote Management 4632 Configure the SSH client to accept connection using SSH version 1. 3 A window disp

Página 406 - 21.5.5 Port Translation

ZyWALL 5/35/70 Series User’s Guide464 Chapter 26 Remote ManagementFigure 253 SSH Example 2: Log in3 The SMT main menu displays next. 26.10 Secure F

Página 407 - 21.6 Port Forwarding Screen

ZyWALL 5/35/70 Series User’s GuideChapter 26 Remote Management 465Figure 254 Secure FTP: Firmware Upload Example26.11 Telnet You can configure you

Página 408

ZyWALL 5/35/70 Series User’s Guide466 Chapter 26 Remote ManagementFigure 256 ADVANCED > REMOTE MGMT > TelnetThe following table describes the

Página 409 - 21.7 Port Triggering

ZyWALL 5/35/70 Series User’s GuideChapter 26 Remote Management 467Figure 257 ADVANCED > REMOTE MGMT > FTPThe following table describes the lab

Página 410

ZyWALL 5/35/70 Series User’s Guide468 Chapter 26 Remote ManagementFigure 258 SNMP Management ModelAn SNMP managed network consists of two main types

Página 411

ZyWALL 5/35/70 Series User’s GuideChapter 26 Remote Management 46926.14.1 Supported MIBsThe ZyWALL supports MIB II that is defined in RFC-1213 and R

Página 412

ZyWALL 5/35/70 Series User’s GuideList of Tables 47Table 82 SECURITY > ANTI-VIRUS > General ...

Página 413 - CHAPTER 22

ZyWALL 5/35/70 Series User’s Guide470 Chapter 26 Remote ManagementFigure 259 ADVANCED > REMOTE MGMT > SNMPThe following table describes the la

Página 414 - 414 Chapter 22 Static Route

ZyWALL 5/35/70 Series User’s GuideChapter 26 Remote Management 47126.15 DNS Use DNS (Domain Name System) to map a domain name to its corresponding I

Página 415 - Chapter 22 Static Route 415

ZyWALL 5/35/70 Series User’s Guide472 Chapter 26 Remote ManagementIf you allow your ZyWALL to be managed by the Vantage CNM server, then you should no

Página 416 - 416 Chapter 22 Static Route

ZyWALL 5/35/70 Series User’s GuideChapter 26 Remote Management 473Last Registration Time This field displays the last date (year-month-date) and time

Página 417 - CHAPTER 23

ZyWALL 5/35/70 Series User’s Guide474 Chapter 26 Remote Management

Página 418 - 23.4 IP Routing Policy Setup

ZyWALL 5/35/70 Series User’s GuideChapter 27 UPnP 475CHAPTER 27UPnPThis chapter introduces the Universal Plug and Play feature. This chapter is only a

Página 419 - 23.5 Policy Route Edit

ZyWALL 5/35/70 Series User’s Guide476 Chapter 27 UPnPWhen a UPnP device joins a network, it announces its presence with a multicast message. For secur

Página 420 - 420 Chapter 23 Policy Route

ZyWALL 5/35/70 Series User’s GuideChapter 27 UPnP 47727.3 Displaying UPnP Port Mapping Click ADVANCED > UPnP > Ports to display the UPnP Port

Página 421 - Chapter 23 Policy Route 421

ZyWALL 5/35/70 Series User’s Guide478 Chapter 27 UPnPThe following table describes the labels in this screen. 27.4 Installing UPnP in Windows Exampl

Página 422 - 422 Chapter 23 Policy Route

ZyWALL 5/35/70 Series User’s GuideChapter 27 UPnP 47927.4.1 Installing UPnP in Windows MeFollow the steps below to install UPnP in Windows Me. 1 Clic

Página 423 - CHAPTER 24

ZyWALL 5/35/70 Series User’s Guide48 List of TablesTable 125 Services and Port Numbers ...

Página 424

ZyWALL 5/35/70 Series User’s Guide480 Chapter 27 UPnP27.4.2 Installing UPnP in Windows XPFollow the steps below to install UPnP in Windows XP.27.5 U

Página 425 - 24.7 Scheduler

ZyWALL 5/35/70 Series User’s GuideChapter 27 UPnP 48127.5.1 Auto-discover Your UPnP-enabled Network Device1 Click Start and Control Panel. Double-cli

Página 426 - Research: 2048 kbps

ZyWALL 5/35/70 Series User’s Guide482 Chapter 27 UPnPNote: When the UPnP-enabled device is disconnected from your computer, all port mappings will be

Página 427

ZyWALL 5/35/70 Series User’s GuideChapter 27 UPnP 483Follow the steps below to access the web configurator.1 Click Start and then Control Panel. 2 Dou

Página 428 - 24.8 Bandwidth Borrowing

ZyWALL 5/35/70 Series User’s Guide484 Chapter 27 UPnP6 Right-click the icon for your ZyXEL device and select Properties. A properties window displays

Página 429

ZyWALL 5/35/70 Series User’s GuideChapter 28 ALG Screen 485CHAPTER 28ALG ScreenThis chapter covers how to use the ZyWALL’s ALG feature to allow certai

Página 430 - 24.11 Configuring Summary

ZyWALL 5/35/70 Series User’s Guide486 Chapter 28 ALG ScreenIf the primary WAN connection fails, the client needs to re-initialize the connection throu

Página 431

ZyWALL 5/35/70 Series User’s GuideChapter 28 ALG Screen 487Figure 264 H.323 ALG Example • With multiple WAN IP addresses on the ZyWALL, you can conf

Página 432

ZyWALL 5/35/70 Series User’s Guide488 Chapter 28 ALG ScreenFigure 266 H.323 Calls from the WAN with Multiple Outgoing Calls• The H.323 ALG operates

Página 433

ZyWALL 5/35/70 Series User’s GuideChapter 28 ALG Screen 489The following example shows SIP signaling (1) and audio (2) sessions between SIP clients A

Página 434

ZyWALL 5/35/70 Series User’s GuideList of Tables 49Table 168 TCP Reset Logs ...

Página 435

ZyWALL 5/35/70 Series User’s Guide490 Chapter 28 ALG ScreenFigure 268 ADVANCED > ALG The following table describes the labels in this screen. Ta

Página 436

ZyWALL 5/35/70 Series User’s GuideChapter 29 Reports 491CHAPTER 29ReportsThis chapter contains information about the ZyWALL’s system and threat report

Página 437 - Bandwidth Manager Monitor

ZyWALL 5/35/70 Series User’s Guide492 Chapter 29 ReportsFigure 269 REPORTS > SYSTEM REPORTSNote: Enabling the ZyWALL’s reporting function decreas

Página 438

ZyWALL 5/35/70 Series User’s GuideChapter 29 Reports 49329.2.1 Viewing Web Site HitsIn the Reports screen, select Web Site Hits from the Report Type

Página 439 - CHAPTER 25

ZyWALL 5/35/70 Series User’s Guide494 Chapter 29 Reports29.2.2 Viewing Host IP AddressIn the Reports screen, select Host IP Address from the Report T

Página 440 - 25.5 Name Server Record

ZyWALL 5/35/70 Series User’s GuideChapter 29 Reports 49529.2.3 Viewing Protocol/PortIn the Reports screen, select Protocol/Port from the Report Type

Página 441 - 25.6 System Screen

ZyWALL 5/35/70 Series User’s Guide496 Chapter 29 Reports29.2.4 System Reports SpecificationsThe following table lists detailed specifications on the

Página 442 - 442 Chapter 25 DNS

ZyWALL 5/35/70 Series User’s GuideChapter 29 Reports 497The following table describes the labels in this screen. The statistics display as follows whe

Página 443 - Chapter 25 DNS 443

ZyWALL 5/35/70 Series User’s Guide498 Chapter 29 ReportsFigure 274 REPORTS > THREAT REPORTS > IDP > Source The statistics display as follow

Página 444 - 444 Chapter 25 DNS

ZyWALL 5/35/70 Series User’s GuideChapter 29 Reports 499The following table describes the labels in this screen. The statistics display as follows wh

Página 445 - 25.8 Configure DNS Cache

ZyWALL 5/35/70 Series User’s GuideSafety Warnings 5Safety WarningsFor your safety, be sure to read and follow all warning notices and instructions.• D

Página 446 - 25.9 Configuring DNS DHCP

ZyWALL 5/35/70 Series User’s Guide50 List of TablesTable 211 Menu 11.3.2: Remote Node Network Layer Options ...

Página 447 - Chapter 25 DNS 447

ZyWALL 5/35/70 Series User’s Guide500 Chapter 29 ReportsFigure 278 REPORTS > THREAT REPORTS > Anti-Virus > Destination 29.5 Anti-Spam Thre

Página 448 - 25.10 Dynamic DNS

ZyWALL 5/35/70 Series User’s GuideChapter 29 Reports 501The statistics display as follows when you display the top entries by source.Spam Mail Detecte

Página 449 - Chapter 25 DNS 449

ZyWALL 5/35/70 Series User’s Guide502 Chapter 29 ReportsFigure 280 REPORTS > THREAT REPORTS > Anti-Spam > Source The statistics display as

Página 450 - 450 Chapter 25 DNS

ZyWALL 5/35/70 Series User’s GuideChapter 30 Logs Screens 503CHAPTER 30Logs ScreensThis chapter contains information about configuring general log set

Página 451 - CHAPTER 26

ZyWALL 5/35/70 Series User’s Guide504 Chapter 30 Logs ScreensThe following table describes the labels in this screen. 30.2 Log Description Example

Página 452 - 26.2 WWW (HTTP and HTTPS)

ZyWALL 5/35/70 Series User’s GuideChapter 30 Logs Screens 50530.2.1 About the Certificate Not Trusted LogmyZyXEL.com and the update server use certif

Página 453 - 26.3 WWW

ZyWALL 5/35/70 Series User’s Guide506 Chapter 30 Logs ScreensFigure 284 myZyXEL.com: Certificate Download30.3 Configuring Log Settings To change yo

Página 454

ZyWALL 5/35/70 Series User’s GuideChapter 30 Logs Screens 507Figure 285 LOGS > Log Settings

Página 455 - 26.4 HTTPS Example

ZyWALL 5/35/70 Series User’s Guide508 Chapter 30 Logs ScreensThe following table describes the labels in this screen. Table 164 LOGS > Log Sett

Página 456

ZyWALL 5/35/70 Series User’s GuideChapter 30 Logs Screens 50930.3.1 Log DescriptionsThis section provides descriptions of example log messages. Log S

Página 457 - 26.4.4 Login Screen

ZyWALL 5/35/70 Series User’s GuideList of Tables 51Table 254 Menu 25: Sample IP Routing Policy Summary ...

Página 458

ZyWALL 5/35/70 Series User’s Guide510 Chapter 30 Logs ScreensTime initialized by Time serverThe router got the time and date from the time server.Time

Página 459 - 26.5 SSH

ZyWALL 5/35/70 Series User’s GuideChapter 30 Logs Screens 511 Table 166 System Error LogsLOG MESSAGE DESCRIPTION%s exceeds the max. number of sessio

Página 460 - 26.6 How SSH Works

ZyWALL 5/35/70 Series User’s Guide512 Chapter 30 Logs Screens Exceed maximum sessions per host (%d).The device blocked a session because the host&apos

Página 461 - 26.8 Configuring SSH

ZyWALL 5/35/70 Series User’s GuideChapter 30 Logs Screens 513 For type and code details, see Table 183 on page 524. Table 169 Packet Filter LogsLOG

Página 462

ZyWALL 5/35/70 Series User’s Guide514 Chapter 30 Logs Screens Table 172 PPP LogsLOG MESSAGE DESCRIPTIONppp:LCP Starting The PPP connection’s Link

Página 463 - 26.9.2 Example 2: Linux

ZyWALL 5/35/70 Series User’s GuideChapter 30 Logs Screens 515 For type and code details, see Table 183 on page 524.%s When the content filter is not o

Página 464

ZyWALL 5/35/70 Series User’s Guide516 Chapter 30 Logs Screensip spoofing - no routing entry ICMP (type:%d, code:%d)The firewall classified an ICMP pac

Página 465 - 26.12 Configuring TELNET

ZyWALL 5/35/70 Series User’s GuideChapter 30 Logs Screens 517 Remote Management: SNMP denied Attempted use of SNMP service was blocked according to re

Página 466 - 26.13 FTP

ZyWALL 5/35/70 Series User’s Guide518 Chapter 30 Logs Screens Table 179 IKE LogsLOG MESSAGE DESCRIPTIONActive connection allowed exceededThe IKE pro

Página 467 - 26.14 SNMP

ZyWALL 5/35/70 Series User’s GuideChapter 30 Logs Screens 519Remote IP <Remote IP> / <Remote IP> conflictsThe security gateway is set to “

Página 468

ZyWALL 5/35/70 Series User’s Guide52 List of Tables

Página 469 - 26.14.2 SNMP Traps

ZyWALL 5/35/70 Series User’s Guide520 Chapter 30 Logs ScreensRule [%d] Phase 2 authentication algorithm mismatchThe listed rule’s IKE phase 2 authenti

Página 470

ZyWALL 5/35/70 Series User’s GuideChapter 30 Logs Screens 521 Table 180 PKI LogsLOG MESSAGE DESCRIPTIONEnrollment successful The SCEP online certifi

Página 471 - 26.15 DNS

ZyWALL 5/35/70 Series User’s Guide522 Chapter 30 Logs Screens CODE DESCRIPTION1 Algorithm mismatch between the certificate and the search constraints

Página 472 - 26.17 Configuring CNM

ZyWALL 5/35/70 Series User’s GuideChapter 30 Logs Screens 523Local User Database does not find user`s credential.A user was not authenticated by the l

Página 473

ZyWALL 5/35/70 Series User’s Guide524 Chapter 30 Logs Screens (L to L/ZW) LAN to LAN/ZyWALLACL set for packets traveling from the LAN to the LAN or th

Página 474

ZyWALL 5/35/70 Series User’s GuideChapter 30 Logs Screens 525 11 Time Exceeded0 Time to live exceeded in transit1 Fragment reassembly time exceeded12

Página 475 - CHAPTER 27

ZyWALL 5/35/70 Series User’s Guide526 Chapter 30 Logs Screens Signature update OK - New signature version: <Signature version> Release Date: <

Página 476 - 27.2 Configuring UPnP

ZyWALL 5/35/70 Series User’s GuideChapter 30 Logs Screens 527 The turbo card is not ready , please insert the card and reboot!The turbo card is not in

Página 477 - Chapter 27 UPnP 477

ZyWALL 5/35/70 Series User’s Guide528 Chapter 30 Logs ScreensRemove rating server [%Rating Server IP Address%] from server list!The listed server IP a

Página 478 - 478 Chapter 27 UPnP

ZyWALL 5/35/70 Series User’s GuideChapter 30 Logs Screens 52930.4 Syslog LogsThere are two types of syslog: event logs and traffic logs. The device g

Página 479 - Chapter 27 UPnP 479

ZyWALL 5/35/70 Series User’s GuidePreface 53PrefaceCongratulations on your purchase of the ZyWALL. Note: Register your product online to receive e-mai

Página 480 - 480 Chapter 27 UPnP

ZyWALL 5/35/70 Series User’s Guide530 Chapter 30 Logs ScreensThe following table shows RFC-2408 ISAKMP payload types that the log displays. Please ref

Página 481 - Chapter 27 UPnP 481

ZyWALL 5/35/70 Series User’s GuideChapter 31 Maintenance 531CHAPTER 31MaintenanceThis chapter displays information on the maintenance screens.31.1 Ma

Página 482 - 482 Chapter 27 UPnP

ZyWALL 5/35/70 Series User’s Guide532 Chapter 31 MaintenanceFigure 286 MAINTENANCE > General SetupThe following table describes the labels in thi

Página 483 - Chapter 27 UPnP 483

ZyWALL 5/35/70 Series User’s GuideChapter 31 Maintenance 533Figure 287 MAINTENANCE > Password The following table describes the labels in this sc

Página 484 - 484 Chapter 27 UPnP

ZyWALL 5/35/70 Series User’s Guide534 Chapter 31 MaintenanceFigure 288 MAINTENANCE > Time and DateThe following table describes the labels in thi

Página 485 - CHAPTER 28

ZyWALL 5/35/70 Series User’s GuideChapter 31 Maintenance 535Get from Time ServerSelect this radio button to have the ZyWALL get the time and date from

Página 486 - 28.4 RTP

ZyWALL 5/35/70 Series User’s Guide536 Chapter 31 Maintenance31.5 Pre-defined NTP Time Server PoolsWhen you turn on the ZyWALL for the first time, the

Página 487 - Chapter 28 ALG Screen 487

ZyWALL 5/35/70 Series User’s GuideChapter 31 Maintenance 537Click the Return button to go back to the Time and Date screen after the time and date is

Página 488 - 28.5 SIP

ZyWALL 5/35/70 Series User’s Guide538 Chapter 31 MaintenanceFor example, if a bridge receives a frame via port 1 from host A (MAC address 00a0c5123478

Página 489 - 28.6 ALG Screen

ZyWALL 5/35/70 Series User’s GuideChapter 31 Maintenance 53931.8 Configuring Device Mode (Router) Click MAINTENANCE > Device Mode to open the fol

Página 490 - Table 153 ADVANCED > ALG

ZyWALL 5/35/70 Series User’s Guide54 PrefaceSyntax Conventions• “Enter” means for you to type one or more characters. “Select” or “Choose” means for y

Página 491 - CHAPTER 29

ZyWALL 5/35/70 Series User’s Guide540 Chapter 31 Maintenance31.9 Configuring Device Mode (Bridge) Click MAINTENANCE > Device Mode to open the fol

Página 492 - 492 Chapter 29 Reports

ZyWALL 5/35/70 Series User’s GuideChapter 31 Maintenance 541Figure 293 MAINTENANCE > Device Mode (Bridge Mode)The following table describes the l

Página 493 - 29.2.1 Viewing Web Site Hits

ZyWALL 5/35/70 Series User’s Guide542 Chapter 31 Maintenance31.10 F/W Upload Screen Find firmware at www.zyxel.com in a file that (usually) uses the

Página 494 - 494 Chapter 29 Reports

ZyWALL 5/35/70 Series User’s GuideChapter 31 Maintenance 543After you see the Firmware Upload in Process screen, wait two minutes before logging into

Página 495 - 29.2.3 Viewing Protocol/Port

ZyWALL 5/35/70 Series User’s Guide544 Chapter 31 Maintenance31.11 Backup and Restore See Section 47.5 on page 672 for transferring configuration fil

Página 496 - 496 Chapter 29 Reports

ZyWALL 5/35/70 Series User’s GuideChapter 31 Maintenance 54531.11.2 Restore Configuration Load a configuration file from your computer to your ZyWALL

Página 497 - Chapter 29 Reports 497

ZyWALL 5/35/70 Series User’s Guide546 Chapter 31 MaintenanceFigure 301 Configuration Upload Error31.11.3 Back to Factory Defaults Click the Reset

Página 498 - 498 Chapter 29 Reports

ZyWALL 5/35/70 Series User’s GuideChapter 31 Maintenance 547Figure 303 MAINTENANCE > Restart

Página 499 - Chapter 29 Reports 499

ZyWALL 5/35/70 Series User’s Guide548 Chapter 31 Maintenance

Página 500 - 500 Chapter 29 Reports

ZyWALL 5/35/70 Series User’s GuideChapter 32 Introducing the SMT 549CHAPTER 32Introducing the SMTThis chapter explains how to access the System Manage

Página 501 - Chapter 29 Reports 501

ZyWALL 5/35/70 Series User’s GuideChapter 1 Getting to Know Your ZyWALL 55CHAPTER 1Getting to Know Your ZyWALLThis chapter introduces the main feature

Página 502 - 502 Chapter 29 Reports

ZyWALL 5/35/70 Series User’s Guide550 Chapter 32 Introducing the SMTFigure 304 Initial Screen32.2.2 Entering the PasswordThe login screen appears a

Página 503 - CHAPTER 30

ZyWALL 5/35/70 Series User’s GuideChapter 32 Introducing the SMT 55132.3.1 Main MenuAfter you enter the password, the SMT displays the ZyWALL Main Me

Página 504 - 30.2 Log Description Example

ZyWALL 5/35/70 Series User’s Guide552 Chapter 32 Introducing the SMTFigure 306 Main Menu (Router Mode)Figure 307 Main Menu (Bridge Mode)The follow

Página 505 - Chapter 30 Logs Screens 505

ZyWALL 5/35/70 Series User’s GuideChapter 32 Introducing the SMT 55332.3.2 SMT Menus OverviewThe following table gives you an overview of your ZyWALL

Página 506 - 506 Chapter 30 Logs Screens

ZyWALL 5/35/70 Series User’s Guide554 Chapter 32 Introducing the SMT6 Route Setup (for the ZyWALL 35 and the ZyWALL 70)6.1 Route Assessment6.2 Traffic

Página 507 - Chapter 30 Logs Screens 507

ZyWALL 5/35/70 Series User’s GuideChapter 32 Introducing the SMT 55532.4 Changing the System PasswordChange the system password by following the step

Página 508 - 508 Chapter 30 Logs Screens

ZyWALL 5/35/70 Series User’s Guide556 Chapter 32 Introducing the SMTFigure 308 Menu 23: System Password2 Type your existing password and press [ENTE

Página 509 - 30.3.1 Log Descriptions

ZyWALL 5/35/70 Series User’s GuideChapter 33 SMT Menu 1 - General Setup 557CHAPTER 33SMT Menu 1 - General SetupMenu 1 - General Setup contains adminis

Página 510 - 510 Chapter 30 Logs Screens

ZyWALL 5/35/70 Series User’s Guide558 Chapter 33 SMT Menu 1 - General SetupFigure 310 Menu 1: General Setup (Bridge Mode)The following table describ

Página 511 - Table 166 System Error Logs

ZyWALL 5/35/70 Series User’s GuideChapter 33 SMT Menu 1 - General Setup 55933.2.1 Configuring Dynamic DNSTo configure Dynamic DNS, set the ZyWALL to

Página 512 - Table 168 TCP Reset Logs

ZyWALL 5/35/70 Series User’s Guide56 Chapter 1 Getting to Know Your ZyWALLTable Key: An O in a mode’s column shows that the device mode has the specif

Página 513 - Table 171 CDR Logs

ZyWALL 5/35/70 Series User’s Guide560 Chapter 33 SMT Menu 1 - General SetupFigure 312 Menu 1.1.1: DDNS Host SummaryThe following table describes the

Página 514 - Table 173 UPnP Logs

ZyWALL 5/35/70 Series User’s GuideChapter 33 SMT Menu 1 - General Setup 561Figure 313 Menu 1.1.1: DDNS Edit HostThe following table describes the fi

Página 515 - Table 175 Attack Logs

ZyWALL 5/35/70 Series User’s Guide562 Chapter 33 SMT Menu 1 - General SetupThe IP address updates when you reconfigure menu 1 or perform DHCP client r

Página 516 - 516 Chapter 30 Logs Screens

ZyWALL 5/35/70 Series User’s GuideChapter 34 WAN and Dial Backup Setup 563CHAPTER 34WAN and Dial Backup SetupThis chapter describes how to configure t

Página 517 - Table 178 IPSec Logs

ZyWALL 5/35/70 Series User’s Guide564 Chapter 34 WAN and Dial Backup SetupThe following table describes the fields in this screen.34.3 Dial BackupThe

Página 518 - Table 179 IKE Logs

ZyWALL 5/35/70 Series User’s GuideChapter 34 WAN and Dial Backup Setup 565Figure 315 Menu 2: Dial Backup Setup The following table describes the fi

Página 519 - Chapter 30 Logs Screens 519

ZyWALL 5/35/70 Series User’s Guide566 Chapter 34 WAN and Dial Backup SetupTo edit the advanced setup for the Dial Backup port, move the cursor to the

Página 520 - 520 Chapter 30 Logs Screens

ZyWALL 5/35/70 Series User’s GuideChapter 34 WAN and Dial Backup Setup 56734.6 Remote Node Profile (Backup ISP)On a ZyWALL with multiple WAN ports, e

Página 521 - Table 180 PKI Logs

ZyWALL 5/35/70 Series User’s Guide568 Chapter 34 WAN and Dial Backup SetupFigure 317 Menu 11.3: Remote Node Profile (Backup ISP)The following table

Página 522 - Table 181 802.1X Logs

ZyWALL 5/35/70 Series User’s GuideChapter 34 WAN and Dial Backup Setup 56934.7 Editing PPP OptionsThe ZyWALL’s dial back-up feature uses PPP. To edit

Página 523 - Table 182 ACL Setting Notes

ZyWALL 5/35/70 Series User’s GuideChapter 1 Getting to Know Your ZyWALL 57The 10/100 Mbps auto-negotiating Ethernet ports allow the ZyWALL to detect t

Página 524 - Table 183 ICMP Notes

ZyWALL 5/35/70 Series User’s Guide570 Chapter 34 WAN and Dial Backup SetupFigure 318 Menu 11.3.1: Remote Node PPP OptionsThis table describes the Re

Página 525 - Table 184 IDP Logs

ZyWALL 5/35/70 Series User’s GuideChapter 34 WAN and Dial Backup Setup 571Figure 319 Menu 11.3.2: Remote Node Network Layer OptionsThe following tab

Página 526 - Table 185 AV Logs

ZyWALL 5/35/70 Series User’s Guide572 Chapter 34 WAN and Dial Backup Setup34.9 Editing Login ScriptFor some remote gateways, text login is required b

Página 527 - Table 186 AS Logs

ZyWALL 5/35/70 Series User’s GuideChapter 34 WAN and Dial Backup Setup 573You can use two variables, $USERNAME and $PASSWORD (all UPPER case), to repr

Página 528 - 528 Chapter 30 Logs Screens

ZyWALL 5/35/70 Series User’s Guide574 Chapter 34 WAN and Dial Backup SetupThe following table describes the fields in this menu.34.10 Remote Node Fil

Página 529 - 30.4 Syslog Logs

ZyWALL 5/35/70 Series User’s GuideChapter 35 LAN Setup 575CHAPTER 35LAN SetupThis chapter describes how to configure the LAN using Menu 3 - LAN Setup.

Página 530 - 530 Chapter 30 Logs Screens

ZyWALL 5/35/70 Series User’s Guide576 Chapter 35 LAN SetupFigure 323 Menu 3.1: LAN Port Filter Setup 35.4 TCP/IP and DHCP Ethernet Setup MenuFrom t

Página 531 - CHAPTER 31

ZyWALL 5/35/70 Series User’s GuideChapter 35 LAN Setup 577Figure 325 Menu 3.2: TCP/IP and DHCP Ethernet SetupFollow the instructions in the next tab

Página 532 - 31.3 Configuring Password

ZyWALL 5/35/70 Series User’s Guide578 Chapter 35 LAN SetupUse the instructions in the following table to configure TCP/IP parameters for the LAN port.

Página 533 - 31.4 Time and Date

ZyWALL 5/35/70 Series User’s GuideChapter 35 LAN Setup 57935.4.1 IP Alias SetupIP alias allows you to partition a physical network into different log

Página 534 - 534 Chapter 31 Maintenance

ZyWALL 5/35/70 Series User’s Guide58 Chapter 1 Getting to Know Your ZyWALLSIP PassthroughThe ZyWALL includes a SIP Application Layer Gateway (ALG). It

Página 535 - Chapter 31 Maintenance 535

ZyWALL 5/35/70 Series User’s Guide580 Chapter 35 LAN SetupOutgoing Protocol FiltersEnter the filter set(s) you wish to apply to the outgoing traffic b

Página 536 - 31.5.1 Resetting the Time

ZyWALL 5/35/70 Series User’s GuideChapter 36 Internet Access 581CHAPTER 36Internet AccessThis chapter shows you how to configure your ZyWALL for Inter

Página 537 - Chapter 31 Maintenance 537

ZyWALL 5/35/70 Series User’s Guide582 Chapter 36 Internet AccessThe following table describes the fields in this menu.Table 216 Menu 4: Internet Acc

Página 538 - 31.7 Transparent Firewalls

ZyWALL 5/35/70 Series User’s GuideChapter 36 Internet Access 58336.3 Configuring the PPTP ClientNote: The ZyWALL supports only one PPTP server connec

Página 539 - Chapter 31 Maintenance 539

ZyWALL 5/35/70 Series User’s Guide584 Chapter 36 Internet AccessFigure 329 Internet Access Setup (PPPoE)The following table contains instructions ab

Página 540 - 540 Chapter 31 Maintenance

ZyWALL 5/35/70 Series User’s GuideChapter 37 DMZ Setup 585CHAPTER 37DMZ SetupThis chapter describes how to configure the ZyWALL’s DMZ using Menu 5 - D

Página 541 - Chapter 31 Maintenance 541

ZyWALL 5/35/70 Series User’s Guide586 Chapter 37 DMZ Setup37.3.1 IP AddressFrom the main menu, enter 5 to open Menu 5 - DMZ Setup to configure TCP/IP

Página 542 - 31.10 F/W Upload Screen

ZyWALL 5/35/70 Series User’s GuideChapter 37 DMZ Setup 58737.3.2 IP Alias SetupUse menu 5.2 to configure the first network. Move the cursor to the Ed

Página 543 - Chapter 31 Maintenance 543

ZyWALL 5/35/70 Series User’s Guide588 Chapter 37 DMZ Setup

Página 544 - 31.11 Backup and Restore

ZyWALL 5/35/70 Series User’s GuideChapter 38 Route Setup 589CHAPTER 38Route SetupThis chapter describes how to configure the ZyWALL's traffic red

Página 545 - Chapter 31 Maintenance 545

ZyWALL 5/35/70 Series User’s GuideChapter 1 Getting to Know Your ZyWALL 59FirewallThe ZyWALL is a stateful inspection firewall with DoS (Denial of Ser

Página 546 - 31.12 Restart Screen

ZyWALL 5/35/70 Series User’s Guide590 Chapter 38 Route SetupThe following table describes the fields in this menu.38.3 Traffic RedirectTo configure t

Página 547 - Chapter 31 Maintenance 547

ZyWALL 5/35/70 Series User’s GuideChapter 38 Route Setup 59138.4 Route FailoverThis menu allows you to configure how the ZyWALL uses the route assess

Página 548 - 548 Chapter 31 Maintenance

ZyWALL 5/35/70 Series User’s Guide592 Chapter 38 Route Setup

Página 549 - CHAPTER 32

ZyWALL 5/35/70 Series User’s GuideChapter 39 Wireless Setup 593CHAPTER 39Wireless SetupUse menu 7 to set up your ZyWALL as the wireless access point.3

Página 550 - 32.2.2 Entering the Password

ZyWALL 5/35/70 Series User’s Guide594 Chapter 39 Wireless SetupFollow the instructions in the next table on how to configure the wireless LAN paramete

Página 551 - 32.3.1 Main Menu

ZyWALL 5/35/70 Series User’s GuideChapter 39 Wireless Setup 59539.1.1 MAC Address Filter SetupYour ZyWALL checks the MAC address of the wireless stat

Página 552 - Table 198 Main Menu Summary

ZyWALL 5/35/70 Series User’s Guide596 Chapter 39 Wireless Setup39.2 TCP/IP SetupFor more detailed information about RIP setup, IP Multicast and IP al

Página 553 - 32.3.2 SMT Menus Overview

ZyWALL 5/35/70 Series User’s GuideChapter 39 Wireless Setup 597Figure 342 Menu 7.2: TCP/IP and DHCP Ethernet SetupThe DHCP and TCP/IP setup fields a

Página 554

ZyWALL 5/35/70 Series User’s Guide598 Chapter 39 Wireless SetupFigure 343 Menu 7.2.1: IP Alias SetupRefer to Table 215 on page 579 for instructions

Página 555

ZyWALL 5/35/70 Series User’s GuideChapter 40 Remote Node Setup 599CHAPTER 40Remote Node SetupThis chapter shows you how to configure a remote node.40.

Página 556 - 32.5 Resetting the ZyWALL

ZyWALL 5/35/70 Series User’s Guide6 Safety WarningsThis product is recyclable. Dispose of it properly.

Página 557 - CHAPTER 33

ZyWALL 5/35/70 Series User’s Guide60 Chapter 1 Getting to Know Your ZyWALLRADIUS (RFC2138, 2139)The ZyWALL can work with a RADIUS (Remote Authenticati

Página 558

ZyWALL 5/35/70 Series User’s Guide600 Chapter 40 Remote Node SetupFigure 344 Menu 11: Remote Node Setup40.3 Remote Node Profile SetupThe following

Página 559 - 33.2.1.1 Editing DDNS Host

ZyWALL 5/35/70 Series User’s GuideChapter 40 Remote Node Setup 601The following table describes the fields in this menu.Table 224 Menu 11.1: Remote

Página 560

ZyWALL 5/35/70 Series User’s Guide602 Chapter 40 Remote Node Setup40.3.2 PPPoE EncapsulationThe ZyWALL supports PPPoE (Point-to-Point Protocol over E

Página 561

ZyWALL 5/35/70 Series User’s GuideChapter 40 Remote Node Setup 60340.3.2.3 MetricSee Section 8.5 on page 151 for details on the Metric field.40.3.3

Página 562

ZyWALL 5/35/70 Series User’s Guide604 Chapter 40 Remote Node SetupFigure 347 Menu 11.1: Remote Node Profile for PPTP EncapsulationThe next table sho

Página 563 - Edit Advanced Setup= No

ZyWALL 5/35/70 Series User’s GuideChapter 40 Remote Node Setup 605Figure 348 Menu 11.1.2: Remote Node Network Layer Options for Ethernet Encapsulati

Página 564 - 34.3 Dial Backup

ZyWALL 5/35/70 Series User’s Guide606 Chapter 40 Remote Node Setup40.5 Remote Node FilterMove the cursor to the field Edit Filter Sets in menu 11.1,

Página 565 - Edit Advanced Setup= Yes

ZyWALL 5/35/70 Series User’s GuideChapter 40 Remote Node Setup 607Figure 349 Menu 11.1.4: Remote Node Filter (Ethernet Encapsulation)Figure 350 Me

Página 566 - [ENTER]

ZyWALL 5/35/70 Series User’s Guide608 Chapter 40 Remote Node SetupFigure 351 Menu 11.1.5: Traffic Redirect SetupThe following table describes the fi

Página 567

ZyWALL 5/35/70 Series User’s GuideChapter 41 IP Static Route Setup 609CHAPTER 41IP Static Route SetupThis chapter shows you how to configure static ro

Página 568

ZyWALL 5/35/70 Series User’s GuideChapter 1 Getting to Know Your ZyWALL 61PPTP supports on-demand, multi-protocol and virtual private networking over

Página 569 - 34.7 Editing PPP Options

ZyWALL 5/35/70 Series User’s Guide610 Chapter 41 IP Static Route SetupFigure 353 Menu 12. 1: Edit IP Static Route`The following table describes the

Página 570 - 34.8 Editing TCP/IP Options

ZyWALL 5/35/70 Series User’s GuideChapter 42 Network Address Translation (NAT) 611CHAPTER 42Network Address Translation(NAT)This chapter discusses how

Página 571

ZyWALL 5/35/70 Series User’s Guide612 Chapter 42 Network Address Translation (NAT)Figure 354 Menu 4: Applying NAT for Internet AccessThe following f

Página 572 - 34.9 Editing Login Script

ZyWALL 5/35/70 Series User’s GuideChapter 42 Network Address Translation (NAT) 613The following table describes the fields in this menu.42.2 NAT Setu

Página 573

ZyWALL 5/35/70 Series User’s Guide614 Chapter 42 Network Address Translation (NAT)42.2.1 Address Mapping Sets Enter 1 to bring up Menu 15.1 - Address

Página 574 - 34.10 Remote Node Filter

ZyWALL 5/35/70 Series User’s GuideChapter 42 Network Address Translation (NAT) 615Note: Menu 15.1.255 is read-only. 42.2.1.2 User-Defined Address Map

Página 575 - CHAPTER 35

ZyWALL 5/35/70 Series User’s Guide616 Chapter 42 Network Address Translation (NAT)Figure 359 Menu 15.1.1: First SetNote: The Type, Local and Global

Página 576 - 576 Chapter 35 LAN Setup

ZyWALL 5/35/70 Series User’s GuideChapter 42 Network Address Translation (NAT) 617Note: You must press [ENTER] at the bottom of the screen to save the

Página 577 - Chapter 35 LAN Setup 577

ZyWALL 5/35/70 Series User’s Guide618 Chapter 42 Network Address Translation (NAT)42.3 Configuring a Server behind NATNote: If you do not assign a De

Página 578 - 578 Chapter 35 LAN Setup

ZyWALL 5/35/70 Series User’s GuideChapter 42 Network Address Translation (NAT) 619Figure 362 Menu 15.2.1: NAT Server Sets4 Select Edit Rule in the S

Página 579 - 35.4.1 IP Alias Setup

ZyWALL 5/35/70 Series User’s Guide62 Chapter 1 Getting to Know Your ZyWALLNetwork Address Translation (NATNetwork Address Translation (NAT) allows the

Página 580 - 580 Chapter 35 LAN Setup

ZyWALL 5/35/70 Series User’s Guide620 Chapter 42 Network Address Translation (NAT)Figure 363 15.2.1.2: NAT Server ConfigurationThe following table d

Página 581 - CHAPTER 36

ZyWALL 5/35/70 Series User’s GuideChapter 42 Network Address Translation (NAT) 621Figure 364 Menu 15.2.1: NAT Server Setup You assign the private ne

Página 582

ZyWALL 5/35/70 Series User’s Guide622 Chapter 42 Network Address Translation (NAT)Figure 366 NAT Example 1Figure 367 Menu 4: Internet Access &

Página 583

ZyWALL 5/35/70 Series User’s GuideChapter 42 Network Address Translation (NAT) 62342.4.2 Example 2: Internet Access with a Default Server Figure 368

Página 584 - 36.5 Basic Setup Complete

ZyWALL 5/35/70 Series User’s Guide624 Chapter 42 Network Address Translation (NAT)1 Map the first IGA to the first inside FTP server for FTP traffic i

Página 585 - CHAPTER 37

ZyWALL 5/35/70 Series User’s GuideChapter 42 Network Address Translation (NAT) 625Figure 371 Example 3: Menu 11.1.2The following figure shows how to

Página 586 - 37.3.1 IP Address

ZyWALL 5/35/70 Series User’s Guide626 Chapter 42 Network Address Translation (NAT)Figure 373 Example 3: Final Menu 15.1.1Now configure the IGA3 to m

Página 587 - 37.3.2 IP Alias Setup

ZyWALL 5/35/70 Series User’s GuideChapter 42 Network Address Translation (NAT) 62742.4.4 Example 4: NAT Unfriendly Application ProgramsSome applicati

Página 588 - 588 Chapter 37 DMZ Setup

ZyWALL 5/35/70 Series User’s Guide628 Chapter 42 Network Address Translation (NAT)Figure 377 Example 4: Menu 15.1.1: Address Mapping Rules42.5 Trig

Página 589 - CHAPTER 38

ZyWALL 5/35/70 Series User’s GuideChapter 42 Network Address Translation (NAT) 629Note: Only one LAN computer can use a trigger port (range) at a time

Página 590 - 38.3 Traffic Redirect

ZyWALL 5/35/70 Series User’s GuideChapter 1 Getting to Know Your ZyWALL 63Upgrade ZyWALL Firmware via LANThe firmware of the ZyWALL can be upgraded vi

Página 591 - 38.4 Route Failover

ZyWALL 5/35/70 Series User’s Guide630 Chapter 42 Network Address Translation (NAT)

Página 592 - 592 Chapter 38 Route Setup

ZyWALL 5/35/70 Series User’s GuideChapter 43 Introducing the ZyWALL Firewall 631CHAPTER 43Introducing the ZyWALL FirewallThis chapter shows you how to

Página 593 - CHAPTER 39

ZyWALL 5/35/70 Series User’s Guide632 Chapter 43 Introducing the ZyWALL FirewallFigure 380 Menu 21.2: Firewall SetupNote: Configure the firewall rul

Página 594 - 594 Chapter 39 Wireless Setup

ZyWALL 5/35/70 Series User’s GuideChapter 44 Filter Configuration 633CHAPTER 44Filter ConfigurationThis chapter shows you how to create and apply filt

Página 595 - Chapter 39 Wireless Setup 595

ZyWALL 5/35/70 Series User’s Guide634 Chapter 44 Filter Configuration44.1.1 The Filter Structure of the ZyWALLA filter set consists of one or more fi

Página 596 - 39.2 TCP/IP Setup

ZyWALL 5/35/70 Series User’s GuideChapter 44 Filter Configuration 635Figure 382 Filter Rule Process You can apply up to four filter sets to a partic

Página 597 - 39.2.2 IP Alias Setup

ZyWALL 5/35/70 Series User’s Guide636 Chapter 44 Filter Configuration44.2 Configuring a Filter SetThe ZyWALL includes filtering for NetBIOS over TCP/

Página 598 - 598 Chapter 39 Wireless Setup

ZyWALL 5/35/70 Series User’s GuideChapter 44 Filter Configuration 637The protocol dependent filter rules abbreviation are listed as follows:Refer to t

Página 599 - CHAPTER 40

ZyWALL 5/35/70 Series User’s Guide638 Chapter 44 Filter ConfigurationTo speed up filtering, all rules in a filter set must be of the same class, i.e.,

Página 600

ZyWALL 5/35/70 Series User’s GuideChapter 44 Filter Configuration 639The following figure illustrates the logic flow of an IP filter.DestinationIP Add

Página 601

ZyWALL 5/35/70 Series User’s Guide64 Chapter 1 Getting to Know Your ZyWALLFigure 2 VPN Application1.3.3 Front Panel LightsFigure 3 ZyWALL 70 Fron

Página 602 - 40.3.2 PPPoE Encapsulation

ZyWALL 5/35/70 Series User’s Guide640 Chapter 44 Filter ConfigurationFigure 386 Executing an IP Filter44.2.3 Configuring a Generic Filter Rule This

Página 603 - 40.3.3 PPTP Encapsulation

ZyWALL 5/35/70 Series User’s GuideChapter 44 Filter Configuration 641to allow you to filter non-IP packets. For IP, it is generally easier to use the

Página 604 - 40.4 Edit IP

ZyWALL 5/35/70 Series User’s Guide642 Chapter 44 Filter Configuration44.3 Example FilterLet’s look at an example to block outside users from accessin

Página 605

ZyWALL 5/35/70 Series User’s GuideChapter 44 Filter Configuration 6436 Enter 1 to configure the first filter rule (the only filter rule of this set).

Página 606 - 40.5 Remote Node Filter

ZyWALL 5/35/70 Series User’s Guide644 Chapter 44 Filter ConfigurationM = N means an action can be taken immediately. The action is to drop the packet

Página 607 - 40.6 Traffic Redirect

ZyWALL 5/35/70 Series User’s GuideChapter 44 Filter Configuration 64544.5.1 Packet Filtering:• The router filters packets as they pass through the ro

Página 608

ZyWALL 5/35/70 Series User’s Guide646 Chapter 44 Filter Configuration6 The firewall can block specific URL traffic that might occur in the future. The

Página 609 - CHAPTER 41

ZyWALL 5/35/70 Series User’s GuideChapter 44 Filter Configuration 647Figure 393 Filtering DMZ Traffic44.6.3 Applying Remote Node FiltersGo to menu

Página 610

ZyWALL 5/35/70 Series User’s Guide648 Chapter 44 Filter Configuration

Página 611 - CHAPTER 42

ZyWALL 5/35/70 Series User’s GuideChapter 45 SNMP Configuration 649CHAPTER 45SNMP ConfigurationThis chapter explains SNMP configuration menu 22.45.1

Página 612

ZyWALL 5/35/70 Series User’s GuideChapter 1 Getting to Know Your ZyWALL 65CARD Green Off The wireless LAN is not ready, or has failed.On The wireless

Página 613 - 42.2 NAT Setup

ZyWALL 5/35/70 Series User’s Guide650 Chapter 45 SNMP Configuration45.2 SNMP Traps The ZyWALL will send traps to the SNMP manager when any one of the

Página 614 - 42.2.1 Address Mapping Sets

ZyWALL 5/35/70 Series User’s GuideChapter 46 System Information & Diagnosis 651CHAPTER 46System Information & DiagnosisThis chapter covers SMT

Página 615

ZyWALL 5/35/70 Series User’s Guide652 Chapter 46 System Information & Diagnosis3 There are three commands in Menu 24.1 - System Maintenance - Stat

Página 616 - 42.2.1.3 Ordering Your Rules

ZyWALL 5/35/70 Series User’s GuideChapter 46 System Information & Diagnosis 65346.3 System Information and Console Port SpeedThis section describ

Página 617

ZyWALL 5/35/70 Series User’s Guide654 Chapter 46 System Information & DiagnosisFigure 399 Menu 24.2.1: System Maintenance: Information The foll

Página 618

ZyWALL 5/35/70 Series User’s GuideChapter 46 System Information & Diagnosis 655Figure 400 Menu 24.2.2: System Maintenance: Change Console Port S

Página 619

ZyWALL 5/35/70 Series User’s Guide656 Chapter 46 System Information & DiagnosisFigure 402 Examples of Error and Information Messages46.4.2 Sysl

Página 620

ZyWALL 5/35/70 Series User’s GuideChapter 46 System Information & Diagnosis 657Your ZyWALL sends five types of syslog messages. Some examples (not

Página 621 - 42.4 General NAT Examples

ZyWALL 5/35/70 Series User’s Guide658 Chapter 46 System Information & Diagnosis4 PPP log 5 Firewall logFilter log Message FormatSdcmdSyslogSend(SY

Página 622 - Figure 366 NAT Example 1

ZyWALL 5/35/70 Series User’s GuideChapter 46 System Information & Diagnosis 65946.4.3 Call-Triggering PacketCall-Triggering Packet displays infor

Página 623 - Figure 368 NAT Example 2

ZyWALL 5/35/70 Series User’s Guide66 Chapter 1 Getting to Know Your ZyWALL

Página 624 - Figure 370 NAT Example 3

ZyWALL 5/35/70 Series User’s Guide660 Chapter 46 System Information & Diagnosis1 From the main menu, select option 24 to open Menu 24 - System Mai

Página 625

ZyWALL 5/35/70 Series User’s GuideChapter 46 System Information & Diagnosis 661Table 245 System Maintenance Menu DiagnosticFIELD DESCRIPTIONPing

Página 626 - 2 Enter 2 to go to menu 15.2

ZyWALL 5/35/70 Series User’s Guide662 Chapter 46 System Information & Diagnosis

Página 627 - Figure 375 NAT Example 4

ZyWALL 5/35/70 Series User’s GuideChapter 47 Firmware and Configuration File Maintenance 663CHAPTER 47Firmware and Configuration FileMaintenanceThis c

Página 628 - 42.5 Trigger Port Forwarding

ZyWALL 5/35/70 Series User’s Guide664 Chapter 47 Firmware and Configuration File MaintenanceThe following table is a summary. Please note that the int

Página 629

ZyWALL 5/35/70 Series User’s GuideChapter 47 Firmware and Configuration File Maintenance 665Figure 407 Telnet into Menu 24.547.3.2 Using the FTP Co

Página 630

ZyWALL 5/35/70 Series User’s Guide666 Chapter 47 Firmware and Configuration File Maintenance47.3.3 Example of FTP Commands from the Command Line Figu

Página 631 - CHAPTER 43

ZyWALL 5/35/70 Series User’s GuideChapter 47 Firmware and Configuration File Maintenance 6674 The IP you entered in the Secured Client IP field in men

Página 632

ZyWALL 5/35/70 Series User’s Guide668 Chapter 47 Firmware and Configuration File Maintenance47.3.8 GUI-based TFTP ClientsThe following table describe

Página 633 - CHAPTER 44

ZyWALL 5/35/70 Series User’s GuideChapter 47 Firmware and Configuration File Maintenance 669Figure 411 Backup Configuration ExampleType a location f

Página 634

ZyWALL 5/35/70 Series User’s GuideChapter 2 Introducing the Web Configurator 67CHAPTER 2Introducing the WebConfiguratorThis chapter describes how to a

Página 635

ZyWALL 5/35/70 Series User’s Guide670 Chapter 47 Firmware and Configuration File MaintenanceFigure 413 Telnet into Menu 24.61 Launch the FTP client

Página 636

ZyWALL 5/35/70 Series User’s GuideChapter 47 Firmware and Configuration File Maintenance 67147.4.2 Restore Using FTP Session ExampleFigure 414 Rest

Página 637 - Len Length

ZyWALL 5/35/70 Series User’s Guide672 Chapter 47 Firmware and Configuration File Maintenance4 After a successful restoration you will see the followin

Página 638

ZyWALL 5/35/70 Series User’s GuideChapter 47 Firmware and Configuration File Maintenance 673Figure 419 Telnet Into Menu 24.7.1: Upload System Firmwa

Página 639

ZyWALL 5/35/70 Series User’s Guide674 Chapter 47 Firmware and Configuration File Maintenance47.5.3 FTP File Upload Command from the DOS Prompt Exampl

Página 640

ZyWALL 5/35/70 Series User’s GuideChapter 47 Firmware and Configuration File Maintenance 6751 Use telnet from your computer to connect to the ZyWALL a

Página 641 - Length= 0

ZyWALL 5/35/70 Series User’s Guide676 Chapter 47 Firmware and Configuration File MaintenanceFigure 422 Menu 24.7.1 As Seen Using the Console Port2 A

Página 642

ZyWALL 5/35/70 Series User’s GuideChapter 47 Firmware and Configuration File Maintenance 677Figure 424 Menu 24.7.2 As Seen Using the Console Port 2

Página 643

ZyWALL 5/35/70 Series User’s Guide678 Chapter 47 Firmware and Configuration File Maintenance

Página 644 - 44.5 Firewall Versus Filters

ZyWALL 5/35/70 Series User’s GuideChapter 48 System Maintenance Menus 8 to 10 679CHAPTER 48System Maintenance Menus 8 to10This chapter leads you throu

Página 645 - 44.5.2 Firewall

ZyWALL 5/35/70 Series User’s Guide68 Chapter 2 Introducing the Web ConfiguratorFigure 6 Change Password Screen6 Click Apply in the Replace Certifica

Página 646 - 44.6 Applying a Filter

ZyWALL 5/35/70 Series User’s Guide680 Chapter 48 System Maintenance Menus 8 to 10The required fields in a command are enclosed in angle brackets <&

Página 647 - HTTP connections

ZyWALL 5/35/70 Series User’s GuideChapter 48 System Maintenance Menus 8 to 10 68148.2 Call Control SupportThe ZyWALL provides two call control functi

Página 648

ZyWALL 5/35/70 Series User’s Guide682 Chapter 48 System Maintenance Menus 8 to 10Figure 429 Budget ManagementThe total budget is the time limit on t

Página 649 - CHAPTER 45

ZyWALL 5/35/70 Series User’s GuideChapter 48 System Maintenance Menus 8 to 10 683Figure 430 Call HistoryThe following table describes the fields in

Página 650 - 45.2 SNMP Traps

ZyWALL 5/35/70 Series User’s Guide684 Chapter 48 System Maintenance Menus 8 to 10Figure 431 Menu 24: System MaintenanceEnter 10 to go to Menu 24.10

Página 651 - CHAPTER 46

ZyWALL 5/35/70 Series User’s GuideChapter 48 System Maintenance Menus 8 to 10 685Table 252 Menu 24.10 System Maintenance: Time and Date SettingFIELD

Página 652

ZyWALL 5/35/70 Series User’s Guide686 Chapter 48 System Maintenance Menus 8 to 10End Date (mm-nth-week-hr)Configure the day and time when Daylight Sav

Página 653 - 46.3.1 System Information

ZyWALL 5/35/70 Series User’s GuideChapter 49 Remote Management 687CHAPTER 49Remote ManagementThis chapter covers remote management found in SMT menu 2

Página 654 - 46.3.2 Console Port Speed

ZyWALL 5/35/70 Series User’s Guide688 Chapter 49 Remote ManagementFigure 433 Menu 24.11 – Remote Management ControlThe following table describes the

Página 655 - 46.4 Log and Trace

ZyWALL 5/35/70 Series User’s GuideChapter 49 Remote Management 68949.1.1 Remote Management LimitationsRemote management over LAN or WAN will not work

Página 656 - 46.4.2 Syslog Logging

ZyWALL 5/35/70 Series User’s GuideChapter 2 Introducing the Web Configurator 691 Press the RESET button for ten seconds, and then release it. If the S

Página 657 - 3 Filter log

ZyWALL 5/35/70 Series User’s Guide690 Chapter 49 Remote Management

Página 658 - 5 Firewall log

ZyWALL 5/35/70 Series User’s GuideChapter 50 IP Policy Routing 691CHAPTER 50IP Policy RoutingThis chapter covers setting and applying policies used fo

Página 659 - 46.5 Diagnostic

ZyWALL 5/35/70 Series User’s Guide692 Chapter 50 IP Policy Routing50.2 IP Routing Policy SetupTo setup a routing policy, perform the following proced

Página 660 - 46.5.1 WAN DHCP

ZyWALL 5/35/70 Series User’s GuideChapter 50 IP Policy Routing 6931 Type 25 in the main menu to open Menu 25 - IP Routing Policy Summary.2 Select Edit

Página 661

ZyWALL 5/35/70 Series User’s Guide694 Chapter 50 IP Policy Routing50.2.1 Applying Policy to PacketsTo apply the policy to packets received on the sel

Página 662

ZyWALL 5/35/70 Series User’s GuideChapter 50 IP Policy Routing 695Figure 436 Menu 25.1.1: IP Routing Policy SetupThe following table describes the f

Página 663 - CHAPTER 47

ZyWALL 5/35/70 Series User’s Guide696 Chapter 50 IP Policy RoutingFigure 437 Example of IP Policy Routing To force Web packets coming from clients w

Página 664 - 47.3 Backup Configuration

ZyWALL 5/35/70 Series User’s GuideChapter 50 IP Policy Routing 697Figure 438 IP Routing Policy Example 12 Select Yes in the LAN field in menu 25.1.1

Página 665

ZyWALL 5/35/70 Series User’s Guide698 Chapter 50 IP Policy RoutingFigure 439 IP Routing Policy Example 25 Select Yes in the LAN field in menu 25.1.1

Página 666 - 47.3.4 GUI-based FTP Clients

ZyWALL 5/35/70 Series User’s GuideChapter 51 Call Scheduling 699CHAPTER 51Call SchedulingCall scheduling allows you to dictate when a remote node shou

Página 667 - 47.3.7 TFTP Command Example

ZyWALL 5/35/70 Series User’s GuideZyXEL Limited Warranty 7ZyXEL Limited WarrantyZyXEL warrants to the original end user (purchaser) that this product

Página 668

ZyWALL 5/35/70 Series User’s Guide70 Chapter 2 Introducing the Web ConfiguratorFigure 9 HOME ScreenAs illustrated above, the main screen is divided

Página 669 - 47.4 Restore Configuration

ZyWALL 5/35/70 Series User’s Guide700 Chapter 51 Call SchedulingFigure 441 Schedule Set SetupIf a connection has been already established, your ZyWA

Página 670

ZyWALL 5/35/70 Series User’s GuideChapter 51 Call Scheduling 701Once your schedule sets are configured, you must then apply them to the desired remote

Página 671

ZyWALL 5/35/70 Series User’s Guide702 Chapter 51 Call SchedulingFigure 443 Applying Schedule Set(s) to a Remote Node (PPTP) Menu 11.1 -

Página 672 - 47.5.1 Firmware File Upload

ZyWALL 5/35/70 Series User’s GuideChapter 52 Troubleshooting 703CHAPTER 52TroubleshootingThis chapter covers potential problems and possible remedies.

Página 673

ZyWALL 5/35/70 Series User’s Guide704 Chapter 52 Troubleshooting52.3 Problems with the DMZ Interface52.4 Problems with the WAN InterfaceTable 261

Página 674 - 47.5.5 TFTP File Upload

ZyWALL 5/35/70 Series User’s GuideChapter 52 Troubleshooting 70552.5 Problems Accessing the ZyWALL52.5.1 Pop-up Windows, JavaScripts and Java Permis

Página 675

ZyWALL 5/35/70 Series User’s Guide706 Chapter 52 Troubleshooting• Web browser pop-up windows from your device.• JavaScripts (enabled by default).• Jav

Página 676

ZyWALL 5/35/70 Series User’s GuideChapter 52 Troubleshooting 707Figure 445 Internet Options: Privacy3 Click Apply to save this setting.52.5.1.1.2 E

Página 677

ZyWALL 5/35/70 Series User’s Guide708 Chapter 52 TroubleshootingFigure 446 Internet Options: Privacy3 Type the IP address of your device (the web pa

Página 678

ZyWALL 5/35/70 Series User’s GuideChapter 52 Troubleshooting 709Figure 447 Pop-up Blocker Settings5 Click Close to return to the Privacy screen. 6 C

Página 679 - CHAPTER 48

ZyWALL 5/35/70 Series User’s GuideChapter 2 Introducing the Web Configurator 712.4.2 Main WindowThe main window shows the screen you select in the na

Página 680 - 48.1.2 Command Usage

ZyWALL 5/35/70 Series User’s Guide710 Chapter 52 TroubleshootingFigure 448 Internet Options: Security 2 Click the Custom Level... button. 3 Scroll d

Página 681 - 48.2 Call Control Support

ZyWALL 5/35/70 Series User’s GuideChapter 52 Troubleshooting 711Figure 449 Security Settings - Java Scripting52.5.1.3 Java Permissions1 From Intern

Página 682 - 48.2.2 Call History

ZyWALL 5/35/70 Series User’s Guide712 Chapter 52 TroubleshootingFigure 450 Security Settings - Java 52.5.1.3.1 JAVA (Sun)1 From Internet Explorer,

Página 683 - 48.3 Time and Date Setting

ZyWALL 5/35/70 Series User’s GuideChapter 52 Troubleshooting 713Figure 451 Java (Sun)52.6 Packet FlowThe following is the packet check flow on the

Página 684

ZyWALL 5/35/70 Series User’s Guide714 Chapter 52 Troubleshooting

Página 685

ZyWALL 5/35/70 Series User’s GuideAppendix A Product Specifications 715APPENDIX AProduct SpecificationsSee also the Introduction chapter for a general

Página 686

ZyWALL 5/35/70 Series User’s Guide716 Appendix A Product SpecificationsOperation Humidity 20% ~ 95% RH (non-condensing)Storage Humidity 20% ~ 95% RH (

Página 687 - CHAPTER 49

ZyWALL 5/35/70 Series User’s GuideAppendix A Product Specifications 717Anti-Virus/IDP (Intrusion Detection and Prevention)Accelerated by a ZyWALL Turb

Página 688

ZyWALL 5/35/70 Series User’s Guide718 Appendix A Product Specifications Other Protocol Support PPP (Point-to-Point Protocol) link layer protocol.Trans

Página 689

ZyWALL 5/35/70 Series User’s GuideAppendix A Product Specifications 719Compatible ZyXEL WLAN CardsThe following table lists the ZyXEL WLAN cards that

Página 690

ZyWALL 5/35/70 Series User’s Guide72 Chapter 2 Introducing the Web ConfiguratorSystem Name This is the System Name you enter in the MAINTENANCE > G

Página 691 - CHAPTER 50

ZyWALL 5/35/70 Series User’s Guide720 Appendix A Product SpecificationsNote: Only certain ZyXEL wireless LAN cards are compatible with the ZyWALL.Do n

Página 692 - 50.2 IP Routing Policy Setup

ZyWALL 5/35/70 Series User’s GuideAppendix A Product Specifications 721 Figure 454 Ethernet Cable Pin AssignmentsTable 269 Console/Dial Backup Por

Página 693

ZyWALL 5/35/70 Series User’s Guide722 Appendix A Product Specifications

Página 694 - (shown next)

ZyWALL 5/35/70 Series User’s GuideAppendix B Hardware Installation 723APPENDIX BHardware InstallationThe ZyWALL can be placed on a desktop or rack-mou

Página 695

ZyWALL 5/35/70 Series User’s Guide724 Appendix B Hardware InstallationFigure 455 Attaching Rubber Feet Note: Do not block the ventilation holes.

Página 696

ZyWALL 5/35/70 Series User’s GuideAppendix B Hardware Installation 725Figure 456 Attaching Mounting Brackets and Screws3 After attaching both mounti

Página 697

ZyWALL 5/35/70 Series User’s Guide726 Appendix B Hardware Installation

Página 698 - LAN port

ZyWALL 5/35/70 Series User’s GuideAppendix C Removing and Installing a Fuse 727APPENDIX CRemoving and Installing a FuseThis appendix shows you how to

Página 699 - CHAPTER 51

ZyWALL 5/35/70 Series User’s Guide728 Appendix C Removing and Installing a Fuse

Página 700

ZyWALL 5/35/70 Series User’s GuideAppendix D Setting up Your Computer’s IP Address 729APPENDIX DSetting up Your Computer’s IP AddressAll computers mus

Página 701

ZyWALL 5/35/70 Series User’s GuideChapter 2 Introducing the Web Configurator 73Status For the LAN, DMZ and WLAN ports, this displays the port speed an

Página 702

ZyWALL 5/35/70 Series User’s Guide730 Appendix D Setting up Your Computer’s IP AddressFigure 458 WIndows 95/98/Me: Network: ConfigurationInstalling

Página 703 - CHAPTER 52

ZyWALL 5/35/70 Series User’s GuideAppendix D Setting up Your Computer’s IP Address 7314 Select Client for Microsoft Networks from the list of network

Página 704

ZyWALL 5/35/70 Series User’s Guide732 Appendix D Setting up Your Computer’s IP AddressFigure 460 Windows 95/98/Me: TCP/IP Properties: DNS Configurat

Página 705

ZyWALL 5/35/70 Series User’s GuideAppendix D Setting up Your Computer’s IP Address 733Figure 461 Windows XP: Start Menu2 In the Control Panel, doubl

Página 706 - Figure 444 Pop-up Blocker

ZyWALL 5/35/70 Series User’s Guide734 Appendix D Setting up Your Computer’s IP AddressFigure 463 Windows XP: Control Panel: Network Connections: Pro

Página 707

ZyWALL 5/35/70 Series User’s GuideAppendix D Setting up Your Computer’s IP Address 735• Click Advanced.Figure 465 Windows XP: Internet Protocol (TCP

Página 708

ZyWALL 5/35/70 Series User’s Guide736 Appendix D Setting up Your Computer’s IP AddressFigure 466 Windows XP: Advanced TCP/IP Properties7 In the Inte

Página 709 - 52.5.1.2 JavaScripts

ZyWALL 5/35/70 Series User’s GuideAppendix D Setting up Your Computer’s IP Address 737Figure 467 Windows XP: Internet Protocol (TCP/IP) Properties8

Página 710 - 3 Scroll down to Scripting

ZyWALL 5/35/70 Series User’s Guide738 Appendix D Setting up Your Computer’s IP AddressFigure 468 Macintosh OS 8/9: Apple Menu2 Select Ethernet built

Página 711 - 52.5.1.3 Java Permissions

ZyWALL 5/35/70 Series User’s GuideAppendix D Setting up Your Computer’s IP Address 739•From the Configure box, select Manually.• Type your IP address

Página 712 - 52.5.1.3.1 JAVA (Sun)

ZyWALL 5/35/70 Series User’s Guide74 Chapter 2 Introducing the Web Configurator2.4.4 HOME Screen: Bridge Mode The following screen displays when t

Página 713 - 52.6 Packet Flow

ZyWALL 5/35/70 Series User’s Guide740 Appendix D Setting up Your Computer’s IP AddressFigure 471 Macintosh OS X: Network4 For statically assigned se

Página 714

ZyWALL 5/35/70 Series User’s GuideAppendix D Setting up Your Computer’s IP Address 741Note: Make sure you are logged in as the root administrator. Usi

Página 715 - APPENDIX A

ZyWALL 5/35/70 Series User’s Guide742 Appendix D Setting up Your Computer’s IP Address• If you have a static IP address, click Statically set IP Addre

Página 716 - Table 265 Performance

ZyWALL 5/35/70 Series User’s GuideAppendix D Setting up Your Computer’s IP Address 743• If you have a dynamic IP address, enter dhcp in the BOOTPROTO=

Página 717

ZyWALL 5/35/70 Series User’s Guide744 Appendix D Setting up Your Computer’s IP AddressFigure 479 Red Hat 9.0: Restart Ethernet Card Verifying Setti

Página 718

ZyWALL 5/35/70 Series User’s GuideAppendix E IP Addresses and Subnetting 745APPENDIX EIP Addresses and SubnettingThis appendix introduces IP addresses

Página 719 - Compatible ZyXEL WLAN Cards

ZyWALL 5/35/70 Series User’s Guide746 Appendix E IP Addresses and SubnettingThe following table shows the network number and host ID arrangement for c

Página 720 - Cable Pin Assignments

ZyWALL 5/35/70 Series User’s GuideAppendix E IP Addresses and Subnetting 747Subnet MasksA subnet mask is used to determine which bits are part of the

Página 721

ZyWALL 5/35/70 Series User’s Guide748 Appendix E IP Addresses and SubnettingThe first mask shown is the class “C” natural mask. Normally if no mask is

Página 722

ZyWALL 5/35/70 Series User’s GuideAppendix E IP Addresses and Subnetting 749Host IDs of all zeros represent the subnet itself and host IDs of all ones

Página 723 - APPENDIX B

ZyWALL 5/35/70 Series User’s GuideChapter 2 Introducing the Web Configurator 75You can use the firewall and VPN in bridge mode.Figure 11 Web Configu

Página 724 - Rack-Mounted Installation

ZyWALL 5/35/70 Series User’s Guide750 Appendix E IP Addresses and SubnettingExample Eight SubnetsSimilarly use a 27-bit mask to create eight subnets (

Página 725 - Figure 457 Rack Mounting

ZyWALL 5/35/70 Series User’s GuideAppendix E IP Addresses and Subnetting 751The following table shows class C IP address last octet values for each su

Página 726

ZyWALL 5/35/70 Series User’s Guide752 Appendix E IP Addresses and SubnettingThe following table is a summary for class “B” subnet planning. Table 283

Página 727 - APPENDIX C

ZyWALL 5/35/70 Series User’s GuideAppendix F Common Services 753Appendix F Common ServicesThe following table lists some commonly-used services and th

Página 728

ZyWALL 5/35/70 Series User’s Guide754 Appendix F Common ServicesHTTP TCP 80 Hyper Text Transfer Protocol - a client/server protocol for the world wide

Página 729 - APPENDIX D

ZyWALL 5/35/70 Series User’s GuideAppendix F Common Services 755SFTP TCP 115 Simple File Transfer Protocol.SMTP TCP 25 Simple Mail Transfer Protocol i

Página 730 - Installing Components

ZyWALL 5/35/70 Series User’s Guide756 Appendix F Common Services

Página 731 - Configuring

ZyWALL 5/35/70 Series User’s GuideAppendix G Wireless LANs 757APPENDIX GWireless LANsWireless LAN TopologiesThis section discusses ad-hoc and infrastr

Página 732 - Windows 2000/NT/XP

ZyWALL 5/35/70 Series User’s Guide758 Appendix G Wireless LANsFigure 482 Basic Service SetESSAn Extended Service Set (ESS) consists of a series of o

Página 733

ZyWALL 5/35/70 Series User’s GuideAppendix G Wireless LANs 759Figure 483 Infrastructure WLANChannelA channel is the radio frequency(ies) used by IEE

Página 734

ZyWALL 5/35/70 Series User’s Guide76 Chapter 2 Introducing the Web ConfiguratorSystem Time This field displays your ZyWALL’s present date (in yyyy-mm-

Página 735

ZyWALL 5/35/70 Series User’s Guide760 Appendix G Wireless LANsFigure 484 RTS/CTSWhen station A sends data to the AP, it might not know that the stat

Página 736

ZyWALL 5/35/70 Series User’s GuideAppendix G Wireless LANs 761A large Fragmentation Threshold is recommended for networks not prone to interference wh

Página 737 - Macintosh OS 8/9

ZyWALL 5/35/70 Series User’s Guide762 Appendix G Wireless LANsIEEE 802.1xIn June 2001, the IEEE 802.1x standard was designed to extend the features of

Página 738

ZyWALL 5/35/70 Series User’s GuideAppendix G Wireless LANs 763• Access-ChallengeSent by a RADIUS server requesting more information in order to allow

Página 739 - Macintosh OS X

ZyWALL 5/35/70 Series User’s Guide764 Appendix G Wireless LANs3 The wireless station replies with identity information, including username and passwor

Página 740 - Verifying Settings

ZyWALL 5/35/70 Series User’s GuideAppendix G Wireless LANs 765PEAP (Protected EAP) Like EAP-TTLS, server-side certificate authentication is used to

Página 741

ZyWALL 5/35/70 Series User’s Guide766 Appendix G Wireless LANsFigure 486 WEP Authentication StepsOpen system authentication involves an unencrypted

Página 742 - Using Configuration Files

ZyWALL 5/35/70 Series User’s GuideAppendix G Wireless LANs 767If this feature is enabled, it is not necessary to configure a default encryption key in

Página 743

ZyWALL 5/35/70 Series User’s Guide768 Appendix G Wireless LANsThe RADIUS server distributes a Pairwise Master Key (PMK) key to the AP that then sets u

Página 744

ZyWALL 5/35/70 Series User’s GuideAppendix G Wireless LANs 769RoamingA wireless station is a device with an IEEE 802.11 mode compliant wireless adapte

Página 745 - APPENDIX E

ZyWALL 5/35/70 Series User’s GuideChapter 2 Introducing the Web Configurator 77Port Status For the WAN, LAN, DMZ, and WLAN Interfaces, this displays t

Página 746

ZyWALL 5/35/70 Series User’s Guide770 Appendix G Wireless LANs3 Access point P2 acknowledges the presence of wireless station Y and relays this inform

Página 747 - Subnetting

ZyWALL 5/35/70 Series User’s GuideAppendix H Windows 98 SE/Me Requirements for Anti-Virus Message Display 771APPENDIX HWindows 98 SE/Me Requirements f

Página 748 - Example: Two Subnets

ZyWALL 5/35/70 Series User’s Guide772 Appendix H Windows 98 SE/Me Requirements for Anti-Virus Message DisplayFigure 490 Windows 98 SE: Task Bar Prop

Página 749 - Example: Four Subnets

ZyWALL 5/35/70 Series User’s GuideAppendix H Windows 98 SE/Me Requirements for Anti-Virus Message Display 773Figure 492 Windows 98 SE: Startup: Crea

Página 750 - Example Eight Subnets

ZyWALL 5/35/70 Series User’s Guide774 Appendix H Windows 98 SE/Me Requirements for Anti-Virus Message DisplayFigure 494 Windows 98 SE: Startup: Shor

Página 751 - Table 281 Eight Subnets

ZyWALL 5/35/70 Series User’s GuideAppendix I VPN Setup 775APPENDIX IVPN SetupThis appendix will help you to quickly create a IPSec/VPN connection betw

Página 752

ZyWALL 5/35/70 Series User’s Guide776 Appendix I VPN SetupThe following pages show a typical configuration that builds a tunnel between two private ne

Página 753 - Common Services

ZyWALL 5/35/70 Series User’s GuideAppendix I VPN Setup 777Figure 496 Headquarters Gateway Policy EditThe IP address of the branch office IPSec route

Página 754

ZyWALL 5/35/70 Series User’s Guide778 Appendix I VPN SetupFigure 497 Branch Office Gateway Policy Edit3 Click the add network policy ( ) icon next t

Página 755

ZyWALL 5/35/70 Series User’s GuideAppendix I VPN Setup 779Figure 498 Headquarters VPN RuleFigure 499 Branch Office VPN Rule4 Configure the screens

Página 756

ZyWALL 5/35/70 Series User’s Guide78 Chapter 2 Introducing the Web Configurator2.4.5 Navigation PanelAfter you enter the password, use the sub-menus

Página 757 - APPENDIX G

ZyWALL 5/35/70 Series User’s Guide780 Appendix I VPN SetupFigure 500 Headquarters Network Policy EditIP addresses on different subnets.Activate the

Página 758 - 758 Appendix G Wireless LANs

ZyWALL 5/35/70 Series User’s GuideAppendix I VPN Setup 781Figure 501 Branch Office Network Policy EditDialing the VPN Tunnel via Web ConfiguratorTo

Página 759 - Appendix G Wireless LANs 759

ZyWALL 5/35/70 Series User’s Guide782 Appendix I VPN SetupFigure 502 VPN Rule ConfiguredThe following screen displays.Figure 503 VPN DialThis scre

Página 760 - Fragmentation Threshold

ZyWALL 5/35/70 Series User’s GuideAppendix I VPN Setup 783VPN TroubleshootingIf the IPSec tunnel does not build properly, the problem is likely a conf

Página 761 - Preamble Type

ZyWALL 5/35/70 Series User’s Guide784 Appendix I VPN SetupFigure 505 VPN Log Example ras> sys log disp ike ipsec# .time source

Página 762 - IEEE 802.1x

ZyWALL 5/35/70 Series User’s GuideAppendix I VPN Setup 785IPSec DebugIf you are having difficulty building an IPSec tunnel to a non-ZyXEL IPSec router

Página 763 - EAP Authentication

ZyWALL 5/35/70 Series User’s Guide786 Appendix I VPN SetupUse a VPN TunnelA VPN tunnel gives you a secure connection to another computer or network. T

Página 764 - Types of Authentication

ZyWALL 5/35/70 Series User’s GuideAppendix J Importing Certificates 787APPENDIX JImporting CertificatesThis appendix shows importing certificates exam

Página 765 - WEP Authentication Steps

ZyWALL 5/35/70 Series User’s Guide788 Appendix J Importing CertificatesFigure 508 Login Screen2 Click Install Certificate to open the Install Certif

Página 766 - Dynamic WEP Key Exchange

ZyWALL 5/35/70 Series User’s GuideAppendix J Importing Certificates 789Figure 510 Certificate Import Wizard 14 Select where you would like to store

Página 767 - Encryption

ZyWALL 5/35/70 Series User’s GuideChapter 2 Introducing the Web Configurator 79Table Key: An O in a mode’s column shows that the device mode has the s

Página 768 - Security Parameters Summary

ZyWALL 5/35/70 Series User’s Guide790 Appendix J Importing CertificatesFigure 512 Certificate Import Wizard 36 Click Yes to add the ZyWALL certific

Página 769 - Figure 487 Roaming Example

ZyWALL 5/35/70 Series User’s GuideAppendix J Importing Certificates 791Figure 514 Certificate General Information after ImportEnrolling and Importin

Página 770 - Requirements for Roaming

ZyWALL 5/35/70 Series User’s Guide792 Appendix J Importing CertificatesFigure 515 ZyWALL Trusted CA ScreenThe CA sends you a package containing the

Página 771 - APPENDIX H

ZyWALL 5/35/70 Series User’s GuideAppendix J Importing Certificates 793Figure 516 CA Certificate Example2 Click Install Certificate and follow the w

Página 772

ZyWALL 5/35/70 Series User’s Guide794 Appendix J Importing CertificatesFigure 517 Personal Certificate Import Wizard 12 The file name and path of th

Página 773

ZyWALL 5/35/70 Series User’s GuideAppendix J Importing Certificates 795Figure 519 Personal Certificate Import Wizard 34 Have the wizard determine wh

Página 774

ZyWALL 5/35/70 Series User’s Guide796 Appendix J Importing CertificatesFigure 521 Personal Certificate Import Wizard 56 You should see the following

Página 775 - APPENDIX I

ZyWALL 5/35/70 Series User’s GuideAppendix J Importing Certificates 797Figure 524 SSL Client Authentication3 You next see the ZyWALL login screen.Fi

Página 776 - VPN Configuration

ZyWALL 5/35/70 Series User’s Guide798 Appendix J Importing Certificates

Página 777 - Appendix I VPN Setup 777

ZyWALL 5/35/70 Series User’s GuideAppendix K Command Interpreter 799APPENDIX KCommand InterpreterThe following describes how to use the command interp

Página 778 - 778 Appendix I VPN Setup

ZyWALL 5/35/70 Series User’s Guide8 Customer SupportCustomer SupportPlease have the following information ready when you contact customer support.• Pr

Página 779 - Appendix I VPN Setup 779

ZyWALL 5/35/70 Series User’s Guide80 Chapter 2 Introducing the Web ConfiguratorWAN General This screen allows you to configure load balancing, route p

Página 780 - 780 Appendix I VPN Setup

ZyWALL 5/35/70 Series User’s Guide800 Appendix K Command InterpreterFigure 526 Displaying Log Categories Example3 Use sys logs category followed by

Página 781 - Appendix I VPN Setup 781

ZyWALL 5/35/70 Series User’s GuideAppendix K Command Interpreter 801Log Command ExampleThis example shows how to set the ZyWALL to record the access l

Página 782 - Figure 503 VPN Dial

ZyWALL 5/35/70 Series User’s Guide802 Appendix K Command InterpreterFigure 528 Routing Command ExampleARP Behavior and the ARP ackGratuitous Command

Página 783 - VPN Troubleshooting

ZyWALL 5/35/70 Series User’s GuideAppendix K Command Interpreter 803A backup gateway (as in the following graphic) is an example of when you might wan

Página 784 - Figure 505 VPN Log Example

ZyWALL 5/35/70 Series User’s Guide804 Appendix K Command InterpreterFigure 530 Managing the Bandwidth of an IPSec SAUse on with this command to set

Página 785 - IPSec Debug

ZyWALL 5/35/70 Series User’s GuideAppendix K Command Interpreter 805Setting the Key Length for Phase 2 IPSec AES Encryption By default the ZyWALL us

Página 786 - Use a VPN Tunnel

ZyWALL 5/35/70 Series User’s Guide806 Appendix K Command Interpreter

Página 787 - APPENDIX J

ZyWALL 5/35/70 Series User’s GuideAppendix L Firewall Commands 807APPENDIX LFirewall CommandsThe following describes the firewall commands. See Append

Página 788 - Figure 508 Login Screen

ZyWALL 5/35/70 Series User’s Guide808 Appendix L Firewall CommandsE-mail config edit firewall e-mail mail-server <ip address of mail server>Thi

Página 789

ZyWALL 5/35/70 Series User’s GuideAppendix L Firewall Commands 809config edit firewall attack minute-high <0-255>This command sets the threshold

Página 790

ZyWALL 5/35/70 Series User’s GuideChapter 2 Introducing the Web Configurator 81IDP General Use this screen to enable IDP on the ZyWALL and choose what

Página 791

ZyWALL 5/35/70 Series User’s Guide810 Appendix L Firewall CommandsConfig edit firewall set <set #> tcp-idle-timeout <seconds>This command

Página 792

ZyWALL 5/35/70 Series User’s GuideAppendix L Firewall Commands 811config edit firewall set <set #> rule <rule #> destaddr-subnet <ip ad

Página 793

ZyWALL 5/35/70 Series User’s Guide812 Appendix L Firewall Commands

Página 794

ZyWALL 5/35/70 Series User’s GuideAppendix M NetBIOS Filter Commands 813APPENDIX MNetBIOS Filter CommandsThe following describes the NetBIOS packet fi

Página 795

ZyWALL 5/35/70 Series User’s Guide814 Appendix M NetBIOS Filter CommandsThe filter types and their default settings are as follows.NetBIOS Filter Conf

Página 796

ZyWALL 5/35/70 Series User’s GuideAppendix M NetBIOS Filter Commands 815sys filter netbios config 3 onThis command blocks IPSec NetBIOS packets.sys fi

Página 797

ZyWALL 5/35/70 Series User’s Guide816 Appendix M NetBIOS Filter Commands

Página 798

ZyWALL 5/35/70 Series User’s GuideAppendix N Certificates Commands 817APPENDIX NCertificates CommandsThe following describes the certificate commands.

Página 799 - APPENDIX K

ZyWALL 5/35/70 Series User’s Guide818 Appendix N Certificates Commandscreate cmp_enroll <name> <CA addr> <CA cert> <auth key>

Página 800 - Displaying Logs

ZyWALL 5/35/70 Series User’s GuideAppendix N Certificates Commands 819replace_factoryCreate a certificate using your device MAC address that will be s

Página 801 - Routing Command

ZyWALL 5/35/70 Series User’s Guide82 Chapter 2 Introducing the Web ConfiguratorAUTH SERVER Local User DatabaseUse this screen to configure the local u

Página 802

ZyWALL 5/35/70 Series User’s Guide820 Appendix N Certificates Commands delete <name> Delete the specified trusted remote host certificate. <n

Página 803 - Figure 529 Backup Gateway

ZyWALL 5/35/70 Series User’s GuideAppendix O Brute-Force Password Guessing Protection 821APPENDIX OBrute-Force Password GuessingProtectionBrute-force

Página 804

ZyWALL 5/35/70 Series User’s Guide822 Appendix O Brute-Force Password Guessing Protection

Página 805

ZyWALL 5/35/70 Series User’s GuideAppendix P Boot Commands 823APPENDIX PBoot CommandsThe BootModule AT commands execute from within the router’s bootu

Página 806

ZyWALL 5/35/70 Series User’s Guide824 Appendix P Boot CommandsFigure 534 Boot Module CommandsAT just answer OKATHE print helpATB

Página 807 - APPENDIX L

ZyWALL 5/35/70 Series User’s GuideIndex 825IndexNumerics10/100 Mbps DMZ 5610/100 Mbps LAN 5610/100 Mbps WAN 579600 baud 549Aaccess control 258Access P

Página 808

ZyWALL 5/35/70 Series User’s Guide826 Indexblacklist 288, 296boldArial font 54Times New Roman font 54boot sector virus 271BPDU 143bridge firewall 57,

Página 809

ZyWALL 5/35/70 Series User’s GuideIndex 827use server detected IP 562wildcard 561default configuration 68default server IP address 405default settings

Página 810

ZyWALL 5/35/70 Series User’s Guide828 Indexfilter 574, 585, 606, 633and NAT 644applying 646configuration 633configuring 636DMZ 646example 642filter ru

Página 811

ZyWALL 5/35/70 Series User’s GuideIndex 829and certificates 329and RADIUS 330authentication algorithms 327, 333Diffie-Hellman key group 328encryption

Página 812

ZyWALL 5/35/70 Series User’s GuideChapter 2 Introducing the Web Configurator 832.4.6 Port Statistics Click Port Statistics in the HOME screen. Read-

Página 813 - APPENDIX M

ZyWALL 5/35/70 Series User’s Guide830 IndexMAC Service Data Unit. See MSDU.macro virus 271mail sessions threshold 292main menu commands 550maintenance

Página 814 - NetBIOS Filter Configuration

ZyWALL 5/35/70 Series User’s GuideIndex 831PMK 768Point-to-Point Protocol over Ethernet. See PPPoEPoint-to-Point Tunneling Protocol. See PPTP.policy a

Página 815

ZyWALL 5/35/70 Series User’s Guide832 Indexrequired fields 551reset button 57, 68resetting the time 536resetting the ZyWALL 68restore configuration 54

Página 816

ZyWALL 5/35/70 Series User’s GuideIndex 833GetNext 468manager 468MIB 468, 469password 649Set 468Trap 468trusted host 649SNMP service 405source address

Página 817 - APPENDIX N

ZyWALL 5/35/70 Series User’s Guide834 IndexUunicast 131Universal Plug and Play. See UPnP.unsolicited commercial e-mail 285upgrading firmware 542upload

Página 818

ZyWALL 5/35/70 Series User’s GuideIndex 835ZZyNOS 654, 664ZyWALL registration 124ZyXEL’s Network Operating System. See ZyNOS.

Página 819

ZyWALL 5/35/70 Series User’s Guide84 Chapter 2 Introducing the Web ConfiguratorThe following table describes the labels in this screen.2.4.7 Show Sta

Página 820

ZyWALL 5/35/70 Series User’s GuideChapter 2 Introducing the Web Configurator 85Figure 13 HOME > Show Statistics > Line ChartThe following tabl

Página 821 - APPENDIX O

ZyWALL 5/35/70 Series User’s Guide86 Chapter 2 Introducing the Web ConfiguratorFigure 14 HOME > DHCP TableThe following table describes the label

Página 822

ZyWALL 5/35/70 Series User’s GuideChapter 2 Introducing the Web Configurator 87Figure 15 HOME > VPN StatusThe following table describes the label

Página 823 - APPENDIX P

ZyWALL 5/35/70 Series User’s Guide88 Chapter 2 Introducing the Web ConfiguratorFigure 16 Home > Bandwidth MonitorThe following table describes th

Página 824 - 824 Appendix P Boot Commands

ZyWALL 5/35/70 Series User’s GuideChapter 3 Wizard Setup 89CHAPTER 3Wizard SetupThis chapter provides information on the Wizard Setup screens in the w

Página 825 - Numerics

ZyWALL 5/35/70 Series User’s GuideCustomer Support 9+” is the (prefix) number you enter to make an international telephone [email protected]

Página 826 - 826 Index

ZyWALL 5/35/70 Series User’s Guide90 Chapter 3 Wizard SetupFigure 17 Wizard Setup Welcome3.2 Internet Access The Internet access wizard screen has

Página 827 - Index 827

ZyWALL 5/35/70 Series User’s GuideChapter 3 Wizard Setup 91Figure 18 ISP Parameters: Ethernet EncapsulationThe following table describes the labels

Página 828 - 828 Index

ZyWALL 5/35/70 Series User’s Guide92 Chapter 3 Wizard Setup3.2.1.2 PPPoE Encapsulation Point-to-Point Protocol over Ethernet (PPPoE) functions as a d

Página 829 - Index 829

ZyWALL 5/35/70 Series User’s GuideChapter 3 Wizard Setup 933.2.1.3 PPTP EncapsulationPoint-to-Point Tunneling Protocol (PPTP) is a network protocol t

Página 830 - 830 Index

ZyWALL 5/35/70 Series User’s Guide94 Chapter 3 Wizard SetupNote: The ZyWALL supports one PPTP server connection at any given time.Figure 20 ISP Para

Página 831 - Index 831

ZyWALL 5/35/70 Series User’s GuideChapter 3 Wizard Setup 953.2.2 Internet Access Wizard: Second ScreenClick Next to go to the screen where you can re

Página 832 - 832 Index

ZyWALL 5/35/70 Series User’s Guide96 Chapter 3 Wizard SetupFigure 21 Internet Access Wizard: Second ScreenFigure 22 Internet Access Setup Complete

Página 833 - Index 833

ZyWALL 5/35/70 Series User’s GuideChapter 3 Wizard Setup 97Figure 23 Internet Access Wizard: RegistrationThe following table describes the labels in

Página 834 - 834 Index

ZyWALL 5/35/70 Series User’s Guide98 Chapter 3 Wizard SetupFigure 24 Internet Access Wizard: Registration in ProgressClick Close to leave the wizard

Página 835 - Index 835

ZyWALL 5/35/70 Series User’s GuideChapter 3 Wizard Setup 99Figure 26 Internet Access Wizard: Registration FailedIf the ZyWALL has been registered, t

Comentários a estes Manuais

Sem comentários