Page 116 / 944 Scroll up to view Page 111 - 115
Chapter 7 Tutorials
ZyWALL USG 50 User’s Guide
116
1
Click
Configuration > Network > Interface > Ethernet
and double-click the
wan1
entry. Enter the available bandwidth (1000 kbps) in the
Egress
Bandwidth
field. Click
OK
.
Figure 64
Configuration > Network > Interface > Ethernet > Edit (wan1)
2
Repeat the process to set the egress bandwidth for
wan2
to 512 Kbps.
7.3.2
Configure the WAN Trunk
1
Click
Configuration > Network > Interface > Trunk
. Click the
Add
icon.
Page 117 / 944
Chapter 7 Tutorials
ZyWALL USG 50 User’s Guide
117
2
Name the trunk and set the
Load Balancing Algorithm
field to
Weighted
Round Robin
.
Add
wan1
and enter 2 in the
Weight
column.
Add
wan2
and enter 1 in the
Weight
column.
Click
OK
.
Figure 65
Configuration > Network > Interface > Trunk > Add
Page 118 / 944
Chapter 7 Tutorials
ZyWALL USG 50 User’s Guide
118
3
Select the trunk as the default trunk and click
Apply
.
Figure 66
Configuration > Network > Interface > Trunk
7.4
How to Set Up an IPSec VPN Tunnel
This example shows how to use the IPSec VPN configuration screens to create the
following VPN tunnel, see
Section 5.4 on page 76
for details on the VPN quick
setup wizard.
Figure 67
VPN Example
192.168.1.0/24
172.16.1.0/24
1.2.3.4
2.2.2.2
LAN
LAN
Page 119 / 944
Chapter 7 Tutorials
ZyWALL USG 50 User’s Guide
119
In this example, the ZyWALL is router
X
(1.2.3.4), and the remote IPSec router is
router
Y
(2.2.2.2). Create the VPN tunnel between ZyWALL
X
’s LAN subnet
(192.168.1.0/24
)
and the LAN subnet behind peer IPSec router
Y
(172.16.1.0/
24).
7.4.1
Set Up the VPN Gateway
The VPN gateway manages the IKE SA. You do not have to set up any other
objects before you configure the VPN gateway because this VPN tunnel does not
use any certificates or extended authentication.
1
Click
Configuration > VPN > IPSec VPN > VPN Gateway
, and then click the
Add
icon.
2
Enable the VPN gateway and name it (“VPN_GW_EXAMPLE”). For
My Address
,
select
Interface
and
wan1
. For the
Peer Gateway Address
, select
Static
Address
and enter 2.2.2.2 in the
Primary
field. For the
Authentication
, Select
Pre-Shared Key
and enter 12345678. Click
OK
.
Figure 68
Configuration > VPN > IPSec VPN > VPN Gateway > Add
Page 120 / 944
Chapter 7 Tutorials
ZyWALL USG 50 User’s Guide
120
7.4.2
Set Up the VPN Connection
The VPN connection manages the IPSec SA. You have to set up the address
objects for the local network and remote network before you can set up the VPN
connection.
1
Click
Configuration > Object > Address
. Click the
Add
icon.
2
Give the new address object a name (“VPN_REMOTE_SUBNET”), change the
Address Type
to
SUBNET
. Set up the
Network
field to 172.16.1.0 and the
Netmask
to 255.255.255.0. Click
OK
.
Figure 69
Configuration > Object > Address > Add
3
Click
Configuration > VPN > IPSec VPN > VPN Connection
. Click the
Add
icon.

Rate

4.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top