User's Manual
Index
ZyWALL USG 20/20W User’s Guide
947
troubleshooting 729
types 89
interfaces 88, 107, 217
and DNS servers 287
and HTTP redirect 350
and layer-3 virtualization 218
and NAT 341
and physical ports 88, 218
and policy routes 305
and static routes 309
and VPN gateways 394
and zones 88, 218
as DHCP relays 286
as DHCP servers 286, 630
backup, see trunks
bandwidth management 285, 295
bridge, see also bridge interfaces.
cellular 218
configuration overview 96
default configuration 90
DHCP clients 285
Ethernet, see also Ethernet interfaces.
gateway 285
general characteristics 218
IP address 284
metric 285
MTU 286
overlapping IP address and subnet mask 285
port groups, see also port groups.
PPPoE/PPTP, see also PPPoE/PPTP interfaces.
prerequisites 96, 219
relationships between 219
static DHCP 287
subnet mask 28
4
trunks, see also trunks.
types 218
virtual, see also virtual interfaces.
VLAN, see also VLAN interfaces.
where used 96
WLAN 218
Internet access
troubleshooting 728, 734
Internet Control Message Protocol, see ICMP
Internet Explorer 43
Internet Message Access Protocol, see IMAP 522
Internet Protocol Security, see IPSec
IP alias, see virtual interfaces
IP decoy portscan 480
IP distributed portscan 480
IP policy routing, see policy routes
IP pool 432
IP portscan 479
IP portsweep 480
IP protocols 561
and service objects 562
ICMP, see ICMP
TCP, see TCP
UDP, see UDP
IP static routes, see static routes
IP/MAC binding 359
exempt list 363
monitor 189
static DHCP 362
IPSec 391
active protocol 399
AH 399
and certificates 394
authentication 400
basic troubleshooting 732
certificates 410
connections 394
connectivity check 400
encapsulation 399
encryption 400
ESP 399
established in two phases 392
local network
391
local policy 39
9
manual key 399
NetBIOS 398
peer 391
Perfect Forward Secrecy 400
PFS 400
phase 2 settings 399
policy enforcement 399
remote access 398
remote IPSec router 391
remote network 391
remote policy 399
replay detection 398
SA life time 399
SA monitor 196
SA see also IPSec SA 421
see also VPN
site-to-site with dynamic peer 398
static site-to-site 398