User Guide
Page 44
... (Figure 8 on page 44) appears. If you log in. 4 Click Login. The number is only good for one login. Figure 7 Update Admin Info Screen 44 ZyWALL USG 20/20W User's Guide Figure 6 Login Screen 3 Type the user name (default: "admin") and password (default: "1234"). By default, the ZyWALL automatically routes this setting.
... (Figure 8 on page 44) appears. If you log in. 4 Click Login. The number is only good for one login. Figure 7 Update Admin Info Screen 44 ZyWALL USG 20/20W User's Guide Figure 6 Login Screen 3 Type the user name (default: "admin") and password (default: "1234"). By default, the ZyWALL automatically routes this setting.
User Guide
Page 45
... in Figure 8 on page 45): • A - Follow the directions in this screen does not appear anymore. otherwise the dashboard appears as illustrated in using its default configuration (see Chapter 4 on page 59); navigation panel • C - main window ZyWALL USG 20/20W User's Guide 45 If you change the password for the default user account, this screen.
... in Figure 8 on page 45): • A - Follow the directions in this screen does not appear anymore. otherwise the dashboard appears as illustrated in using its default configuration (see Chapter 4 on page 59); navigation panel • C - main window ZyWALL USG 20/20W User's Guide 45 If you change the password for the default user account, this screen.
User Guide
Page 83
...a 1024 bit (1Kb) random number. DH1 (default) refers to Diffie-Hellman Group 5 a 1536 bit random number. • SA Life Time: Set how often the ZyWALL renegotiates the IKE SA. See VPN, NAT, ... it does not respond, the ZyWALL shuts down the IKE SA. • Authentication Method: Select Pre-Shared Key to use a password or Certificate to use one of the ZyWALL's certificates. 5.5.6 VPN Advanced Wizard.... If it responds, the ZyWALL transmits the data. Note: The remote IPSec device must pass through the IKE SA. Figure 46 VPN Advanced Wizard: Step 4 ZyWALL USG 20/20W User's Guide 83 AES192 uses...
...a 1024 bit (1Kb) random number. DH1 (default) refers to Diffie-Hellman Group 5 a 1536 bit random number. • SA Life Time: Set how often the ZyWALL renegotiates the IKE SA. See VPN, NAT, ... it does not respond, the ZyWALL shuts down the IKE SA. • Authentication Method: Select Pre-Shared Key to use a password or Certificate to use one of the ZyWALL's certificates. 5.5.6 VPN Advanced Wizard.... If it responds, the ZyWALL transmits the data. Note: The remote IPSec device must pass through the IKE SA. Figure 46 VPN Advanced Wizard: Step 4 ZyWALL USG 20/20W User's Guide 83 AES192 uses...
User Guide
Page 231
...MD5. By default, the ZyWALL uses the factory assigned MAC address to 16 characters long. otherwise, the ZyWALL uses multicasting. Authentication Select an authentication method, or disable authentication. Type the password for more...password can consist of another device or computer. Use Default MAC Address Select this interface when the area is Text. Chapter 11 Interfaces Table 51 Configuration > Network > Interface > Ethernet > Edit (continued) LABEL DESCRIPTION V2-Broadcast This field is effective when RIP is MD5. Type the ID for MD5 authentication. ZyWALL USG 20/20W...
...MD5. By default, the ZyWALL uses the factory assigned MAC address to 16 characters long. otherwise, the ZyWALL uses multicasting. Authentication Select an authentication method, or disable authentication. Type the password for more...password can consist of another device or computer. Use Default MAC Address Select this interface when the area is Text. Chapter 11 Interfaces Table 51 Configuration > Network > Interface > Ethernet > Edit (continued) LABEL DESCRIPTION V2-Broadcast This field is effective when RIP is MD5. Type the ID for MD5 authentication. ZyWALL USG 20/20W...
User Guide
Page 254
... name (up to 31 alphanumeric characters) as the key to enable wireless user authentication through scanning. To make your wireless network more secure, change the default SSID to something that are available when you want the WLAN interface to hide the SSID in this button to the access point (AP) must... box to be the same on the wireless LAN interface. The key is associated. Interface Name This shows the name for the wireless LAN. Enter a password (up to turn on the external authentication server and ZyWALL. 254 ZyWALL USG 20/20W User's Guide
... name (up to 31 alphanumeric characters) as the key to enable wireless user authentication through scanning. To make your wireless network more secure, change the default SSID to something that are available when you want the WLAN interface to hide the SSID in this button to the access point (AP) must... box to be the same on the wireless LAN interface. The key is associated. Interface Name This shows the name for the wireless LAN. Enter a password (up to turn on the external authentication server and ZyWALL. 254 ZyWALL USG 20/20W User's Guide
User Guide
Page 257
...subnet broadcasting; Passive Interface Select this interface belongs. Type the ID for MD5 authentication. ZyWALL USG 20/20W User's Guide 257 BiDir - This interface sends and receives routing information. Receive Version... - This field is available if the Authentication is enabled. Type the password for MD5 authentication. As a result, this to stop forwarding OSPF routing...with peer border routers, you must use the same authentication method that they use the default authentication method in the area None - This field is available if the Authentication is ...
...subnet broadcasting; Passive Interface Select this interface belongs. Type the ID for MD5 authentication. ZyWALL USG 20/20W User's Guide 257 BiDir - This interface sends and receives routing information. Receive Version... - This field is available if the Authentication is enabled. Type the password for MD5 authentication. As a result, this to stop forwarding OSPF routing...with peer border routers, you must use the same authentication method that they use the default authentication method in the area None - This field is available if the Authentication is ...
User Guide
Page 261
... See Chapter 38 on page 583 for how to authenticate the wireless clients. ZyWALL USG 20/20W User's Guide 261 The ZyWALL's default configuration also includes an authentication method object named "default" that uses certificates for authentication. TTLS Certificate Select an authentication method object that ... the wireless clients. The certificates you select Authentication Method. The RADIUS fields display if you have the ZyWALL check a user's user name and password against the ZyWALL's local database, a remote LDAP, RADIUS, a Active Directory server, or more than one of the...
... See Chapter 38 on page 583 for how to authenticate the wireless clients. ZyWALL USG 20/20W User's Guide 261 The ZyWALL's default configuration also includes an authentication method object named "default" that uses certificates for authentication. TTLS Certificate Select an authentication method object that ... the wireless clients. The certificates you select Authentication Method. The RADIUS fields display if you have the ZyWALL check a user's user name and password against the ZyWALL's local database, a remote LDAP, RADIUS, a Active Directory server, or more than one of the...
User Guide
Page 262
... > Interface > WLAN > MAC Filter. Radius Server Secret Enter a password (up to 31 alphanumeric characters) as shown. 262 ZyWALL USG 20/20W User's Guide The wireless station needs to enter the user name and password again before access to allow association) or block specific devices from the ... Interface > WLAN > Add (WPA/WPA2 Security) LABEL DESCRIPTION Radius Server Port Enter the RADIUS server's listening port number (the default is not sent over the network. Idle Timeout Group Key Update Timer Note: If wireless station authentication is the WPA equivalent of inactivity...
... > Interface > WLAN > MAC Filter. Radius Server Secret Enter a password (up to 31 alphanumeric characters) as shown. 262 ZyWALL USG 20/20W User's Guide The wireless station needs to enter the user name and password again before access to allow association) or block specific devices from the ... Interface > WLAN > Add (WPA/WPA2 Security) LABEL DESCRIPTION Radius Server Port Enter the RADIUS server's listening port number (the default is not sent over the network. Idle Timeout Group Key Update Timer Note: If wireless station authentication is the WPA equivalent of inactivity...
User Guide
Page 273
...BDR). This field is available if the Authentication is looking for load balancing. The password can consist of this interface when the area is MD5. ZyWALL USG 20/20W User's Guide 273 Type the password for MD5 authentication. Click Cancel to stop forwarding OSPF routing information from the selected ...long. Click OK to save your changes back to the screen where you must use the same authentication method that they use the default authentication method in the area None - Select None to disable OSPF in which this VLAN. Type the ID for text authentication....
...BDR). This field is available if the Authentication is looking for load balancing. The password can consist of this interface when the area is MD5. ZyWALL USG 20/20W User's Guide 273 Type the password for MD5 authentication. Click Cancel to stop forwarding OSPF routing information from the selected ...long. Click OK to save your changes back to the screen where you must use the same authentication method that they use the default authentication method in the area None - Select None to disable OSPF in which this VLAN. Type the ID for text authentication....
User Guide
Page 322
...Stubby Area (NSSA), per RFC 1587. NSSA - Type Select the type of routing updates. Authentication Select the default authentication method used in IP address format. Text uses a plain text password that are directly connected to the NSSA. Figure 195 Configuration > Network > Routing > OSPF > Add The ... depends on page 315), and click either the Add icon or an Edit icon. MD5 uses an MD5 password and authentication ID (most secure). 322 ZyWALL USG 20/20W User's Guide It has routing information about the OSPF AS but not the confidentiality, of OSPF area. This...
...Stubby Area (NSSA), per RFC 1587. NSSA - Type Select the type of routing updates. Authentication Select the default authentication method used in IP address format. Text uses a plain text password that are directly connected to the NSSA. Figure 195 Configuration > Network > Routing > OSPF > Add The ... depends on page 315), and click either the Add icon or an Edit icon. MD5 uses an MD5 password and authentication ID (most secure). 322 ZyWALL USG 20/20W User's Guide It has routing information about the OSPF AS but not the confidentiality, of OSPF area. This...
User Guide
Page 323
...to the backbone. You should set up to create a new virtual link or edit an existing one. The ZyWALL confirms you to 16 characters long. Text uses a plain text password that does not have a direct connection to the backbone) to display the authentication ID and key. MD5 ... and on page ZyWALL USG 20/20W User's Guide 323 None uses no authentication. When the OSPF add or edit screen (see Section 14.3.2 on the ABR that is not associated with a specific area. Type the default ID for MD5 authentication in the area. Type the default password for text authentication....
...to the backbone. You should set up to create a new virtual link or edit an existing one. The ZyWALL confirms you to 16 characters long. Text uses a plain text password that does not have a direct connection to the backbone) to display the authentication ID and key. MD5 ... and on page ZyWALL USG 20/20W User's Guide 323 None uses no authentication. When the OSPF add or edit screen (see Section 14.3.2 on the ABR that is not associated with a specific area. Type the default ID for MD5 authentication in the area. Type the default password for text authentication....
User Guide
Page 324
...MD5 authentication in the area. Click OK to save your changes back to exit this screen. Click Cancel to the ZyWALL. MD5 uses an MD5 password and authentication ID (most secure). Type the default password for MD5 authentication in the area. Chapter 14 Routing Protocols 322) has the Type set to 16 characters long...Enter the 32-bit ID (in this screen without saving. 14.4 Routing Protocol Technical Reference Here is more detailed information about RIP and OSPF. 324 ZyWALL USG 20/20W User's Guide Click either the Add icon or an entry and the Edit icon to 16 characters long.
...MD5 authentication in the area. Click OK to save your changes back to exit this screen. Click Cancel to the ZyWALL. MD5 uses an MD5 password and authentication ID (most secure). Type the default password for MD5 authentication in the area. Chapter 14 Routing Protocols 322) has the Type set to 16 characters long...Enter the 32-bit ID (in this screen without saving. 14.4 Routing Protocol Technical Reference Here is more detailed information about RIP and OSPF. 324 ZyWALL USG 20/20W User's Guide Click either the Add icon or an entry and the Edit icon to 16 characters long.
User Guide
Page 325
... authentication method. It also includes an authentication ID, which can override the default in any value between 1 and 255. As a result, you can only select one the ZyWALL calculates using the MD5 password. ZyWALL USG 20/20W User's Guide 325 authentication using an MD5 password and authentication ID. In RIP version 2, you only have the same key...
... authentication method. It also includes an authentication ID, which can override the default in any value between 1 and 255. As a result, you can only select one the ZyWALL calculates using the MD5 password. ZyWALL USG 20/20W User's Guide 325 authentication using an MD5 password and authentication ID. In RIP version 2, you only have the same key...
User Guide
Page 544
... 33.2.1.1 on page 541 for a ext-group-user type user account. this type. • ext-group-user - Retype Group Identifier Enter the password of minutes this user account. It can enter 0 to a value other than user group names, and some words are reserved. You can look at...character cannot be different than the default settings, select Use Manual Settings then fill your preferred values in the fields that identifies the group to which this user has access to renew the current session before the lease time expires. 544 ZyWALL USG 20/20W User's Guide Chapter 33 User/...
... 33.2.1.1 on page 541 for a ext-group-user type user account. this type. • ext-group-user - Retype Group Identifier Enter the password of minutes this user account. It can enter 0 to a value other than user group names, and some words are reserved. You can look at...character cannot be different than the default settings, select Use Manual Settings then fill your preferred values in the fields that identifies the group to which this user has access to renew the current session before the lease time expires. 544 ZyWALL USG 20/20W User's Guide Chapter 33 User/...
User Guide
Page 550
...535 (about 45.5 days). These default authentication timeout settings also control the settings for access account is checked. Type the maximum number of simultaneous logins by each admin user. for any user account's authentication timeout settings. 550 ZyWALL USG 20/20W User's Guide Type the maximum ...number of times each user can still manually configure any existing user accounts that are set to use different IP addresses. This number must be between 1 and 99. You can login unsuccessfully (for example, wrong password) ...
...535 (about 45.5 days). These default authentication timeout settings also control the settings for access account is checked. Type the maximum number of simultaneous logins by each admin user. for any user account's authentication timeout settings. 550 ZyWALL USG 20/20W User's Guide Type the maximum ...number of times each user can still manually configure any existing user accounts that are set to use different IP addresses. This number must be between 1 and 99. You can login unsuccessfully (for example, wrong password) ...
User Guide
Page 580
... select it and click Edit to its last-saved settings. 580 ZyWALL USG 20/20W User's Guide Name This is the address of the RADIUS server for an example. # This field displays the index number. The default port of the AD or LDAP server. You need not change ...the external authentication server and the ZyWALL. Double-click an entry or select it and click Remove. The ZyWALL confirms you want to do so with additional information. For example, o=ZyXEL, c=US. See Section 11.3.2 on the external authentication server and the ZyWALL. Server Address This is the name...
... select it and click Edit to its last-saved settings. 580 ZyWALL USG 20/20W User's Guide Name This is the address of the RADIUS server for an example. # This field displays the index number. The default port of the AD or LDAP server. You need not change ...the external authentication server and the ZyWALL. Double-click an entry or select it and click Remove. The ZyWALL confirms you want to do so with additional information. For example, o=ZyXEL, c=US. See Section 11.3.2 on the external authentication server and the ZyWALL. Server Address This is the name...
User Guide
Page 591
...'s fingerprint. Finding Out More • See Section 6.6 on page 103 for related information on your certificate's public or private passwords. ZyWALL USG 20/20W User's Guide 591 Certificate File Formats Any certificate that may be in the GUI as the factory default certificate. The private key is used to be encrypted. Chapter 39 Certificates Factory...
...'s fingerprint. Finding Out More • See Section 6.6 on page 103 for related information on your certificate's public or private passwords. ZyWALL USG 20/20W User's Guide 591 Certificate File Formats Any certificate that may be in the GUI as the factory default certificate. The private key is used to be encrypted. Chapter 39 Certificates Factory...
User Guide
Page 603
...labels in -depth list of information about the certificate. The ZyWALL confirms you take this action. Type the file's password that is currently in Use Edit This bar displays the percentage of your certificates. ZyWALL USG 20/20W User's Guide 603 To remove an entry, select it before...import any valid certificate signed by one of certificates that is almost full, you have set the ZyWALL to save the certificate on this screen. Uploading a new firmware or default configuration file does not delete your certificates unless you import a binary PKCS#12 format file.
...labels in -depth list of information about the certificate. The ZyWALL confirms you take this action. Type the file's password that is currently in Use Edit This bar displays the percentage of your certificates. ZyWALL USG 20/20W User's Guide 603 To remove an entry, select it before...import any valid certificate signed by one of certificates that is almost full, you have set the ZyWALL to save the certificate on this screen. Uploading a new firmware or default configuration file does not delete your certificates unless you import a binary PKCS#12 format file.
User Guide
Page 727
.... If the LEDs still do not turn on page 747. ZyWALL USG 20/20W User's Guide 727 In this case, you 've forgotten the ZyWALL's password, use the RESET button. In the Command Prompt window, type "ping" followed by the ZyWALL's LAN IP address (192.168.1.1 is 1234, LAN IP ... functioning properly. Make sure that its features and checks, see Chapter 9 on . Check all cable connections. It returns the ZyWALL to the factory defaults (password is the default) and then press [ENTER]. For the order in to an appropriate power source. Also make sure that you might encounter. ...
.... If the LEDs still do not turn on page 747. ZyWALL USG 20/20W User's Guide 727 In this case, you 've forgotten the ZyWALL's password, use the RESET button. In the Command Prompt window, type "ping" followed by the ZyWALL's LAN IP address (192.168.1.1 is 1234, LAN IP ... functioning properly. Make sure that its features and checks, see Chapter 9 on . Check all cable connections. It returns the ZyWALL to the factory defaults (password is the default) and then press [ENTER]. For the order in to an appropriate power source. Also make sure that you might encounter. ...
User Guide
Page 741
...included. The centers of key features. Table 228 Default Login Information ATTRIBUTE SPECIFICATION Default IP Address (P2, P3) 192.168.1.1 Default Subnet Mask 255.255.255.0 (24 bits) (P2, P3) Default Password 1234 This table provides hardware specifications. ZyWALL USG 20/20W User's Guide 741 A wall-mounting kit is ...RS-232, DB9F connector 1, 2.0 plug and play See www.zyxel.com for a general overview of the holes are subject to 95% (non-condensing) Mean Time Between Failures: 323,823 hours The ZyWALL has wall-mounting holes on page 37 for the supported 3G ...
...included. The centers of key features. Table 228 Default Login Information ATTRIBUTE SPECIFICATION Default IP Address (P2, P3) 192.168.1.1 Default Subnet Mask 255.255.255.0 (24 bits) (P2, P3) Default Password 1234 This table provides hardware specifications. ZyWALL USG 20/20W User's Guide 741 A wall-mounting kit is ...RS-232, DB9F connector 1, 2.0 plug and play See www.zyxel.com for a general overview of the holes are subject to 95% (non-condensing) Mean Time Between Failures: 323,823 hours The ZyWALL has wall-mounting holes on page 37 for the supported 3G ...