ZyXEL Router Prestige 334 User Manual
Here you can view all the pages of manual ZyXEL Router Prestige 334 User Manual. The ZyXEL manuals for Router are available online for free. You can easily download all the documents as PDF.
Page 321
Prestige 334 User’s Guide Chapter 34 VPN/IPSec Setup320 Port Start0 is the default and signifies any port. Type a port number from 0 to 65535. You cannot create a VPN tunnel if you try to connect using a port number that does not match this port number or range of port numbers. Some of the most common IP ports are: 21, FTP; 53, DNS; 23, Telnet; 80, HTTP; 25, SMTP; 110, POP3 EndEnter a port number in this field to define a port range. This port number must be greater than that specified in the...
Page 322
Prestige 334 User’s Guide 321Chapter 34 VPN/IPSec Setup 34.3 IKE Setup To edit this menu, the Key Management field in Menu 27.1.1 – IPSec Setup must be set to IKE. Move the cursor to the Edit Key Management Setup field in Menu 27.1.1 – IPSec Setup; press [SPACE BAR] to select Ye s and then press [ENTER] to display Menu 27.1.1.1 – IKE Setup. Enable Replay DetectionAs a VPN setup is processing intensive, the system is vulnerable to Denial of Service (DoS) attacks The IPSec receiver can detect and...
Page 323
Prestige 334 User’s Guide Chapter 34 VPN/IPSec Setup322 Figure 180 Menu 27.1.1.1 IKE Setup The following table describes the fields in this menu. Menu 27.1.1.1 - IKE Setup Phase 1 Negotiation Mode= Main Pre-Shared Key= ? Encryption Algorithm= DES Authentication Algorithm= MD5 SA Life Time (Seconds)= 28800 Key Group= DH1 Phase 2 Active Protocol= ESP Encryption Algorithm= DES Authentication Algorithm= SHA1 SA...
Page 324
Prestige 334 User’s Guide 323Chapter 34 VPN/IPSec Setup 34.4 Manual Setup You only configure Menu 27.1.1.2 – Manual Setup when you select Manual in the Key Management field in Menu 27.1.1 – IPSec Setup. Manual key management is useful if you have problems with IKE key management. Authentication AlgorithmMD5 (Message Digest 5) and SHA1 (Secure Hash Algorithm) are hash algorithms used to authenticate packet data. The SHA1 algorithm is generally considered stron- ger than MD5, but is slightly slower....
Page 325
Prestige 334 User’s Guide Chapter 34 VPN/IPSec Setup324 34.4.0.1 Active Protocol This field is a combination of mode and security protocols used for the VPN. See the Web Configurator part on VPN for more information on these parameters. 34.4.0.2 Security Parameter Index (SPI) To edit this menu, move the cursor to the Edit Manual Setup field in Menu 27.1.1 – IPSec Setup press [SPACE BAR] to select Ye s and then press [ENTER] to go to Menu 27.1.1.2 – Manual Setup. Figure 181 Menu 27.1.1.2 Manual...
Page 326
Prestige 334 User’s Guide 325Chapter 34 VPN/IPSec Setup Encryption AlgorithmPress [SPACE BAR] to choose from NULL, 3DES or DES and then press [ENTER]. Fill in the Key1 field below when you choose DES and fill in fields Key1 to Key3 when you choose 3DES. Select NULL to set up a tunnel without encryption. When you select NULL, you do not enter any encryption keys. Key1Enter a unique eight-character key. Any character may be used, including spaces, but trailing spaces are truncated. Fill in the Key1...
Page 327
Prestige 334 User’s Guide Chapter 35 SA Monitor326 CHAPTER35 SA Monitor This chapter teaches you how to manage your SAs by using the SA Monitor in SMT menu 27.2. 35.1 SA Monitor Overview A Security Association (SA) is the group of security settings related to a specific VPN tunnel. This menu (shown next) displays active VPN connections. 35.2 Using SA Monitor 1. Use the Refresh function to display active VPN connections. 2. Use the Disconnect function to cut off active connections. 3. Type 2 in Menu...
Page 328
Prestige 334 User’s Guide 327Chapter 35 SA Monitor Figure 182 Menu 27.2 SA Monitor The following table describes the fields in this menu. Menu 27.2 - SA Monitor # --- 001 002 003 004 005 006 007 008 009 010 Name -------------------------------- Taiwan : 3.3.3.1 – 3.3.3.3.100 Encap. --------- Tunnel IPSec ALgorithm ---------------- ESP DES MD5 Select Command= Refresh Select Connection= N/A Press ENTER to Confirm or ESC to...
Page 329
Prestige 334 User’s Guide Appendix A Troubleshooting330 Appendix A Troubleshooting This chapter covers potential problems and possible remedies. After each problem description, some instructions are provided to help you to diagnose and to solve the problem. Please see our included disk for further information. Table 110 Troubleshooting PROBLEMCORRECTIVE ACTION None of the LEDs turn on when you turn on the Prestige.Make sure that you have the correct power adapter connected to the Prestige and...
Page 330
Prestige 334 User’s Guide 331Appendix A Troubleshooting 35.3 Problems with the Password 35.4 Problems with Remote Management Access to a web page with a URL containing a forbidden keyword is not blocked.Make sure that you select the Keyword Blocking check box in the Content Filtering screen. Make sure that the keywords that you type are listed in the Keyword List. If a keyword that is listed in the Keyword List is not blocked when it is found in a URL, customize the keyword blocking using...