User Manual
Page 77
... following screen. This ZyWALL is case-sensitive. Choose this if the remote IPSec device has a static IP address or a domain name. The clients have dynamic IP addresses and are also known as shown in users. Scenario Click the Express radio button as dial-in Figure 42 on the left of the screen changes to match the... a number. Chapter 5 Quick Setup 5.5 VPN Express Wizard - Select the scenario that best describes your intended VPN connection. Only the clients can initiate the VPN tunnel. ZyWALL USG 50 User's Guide 77
... following screen. This ZyWALL is case-sensitive. Choose this if the remote IPSec device has a static IP address or a domain name. The clients have dynamic IP addresses and are also known as shown in users. Scenario Click the Express radio button as dial-in Figure 42 on the left of the screen changes to match the... a number. Chapter 5 Quick Setup 5.5 VPN Express Wizard - Select the scenario that best describes your intended VPN connection. Only the clients can initiate the VPN tunnel. ZyWALL USG 50 User's Guide 77
User Manual
Page 81
... Advanced radio button as dial-in Figure 42 on the left of the screen changes to match the scenario you select. • Site-to -site with Dynamic Peer - Choose this if the remote IPSec device has a dynamic IP address. ZyWALL USG 50 User's Guide 81 Only the remote IPSec device can initiate the VPN tunnel. •...
... Advanced radio button as dial-in Figure 42 on the left of the screen changes to match the scenario you select. • Site-to -site with Dynamic Peer - Choose this if the remote IPSec device has a dynamic IP address. ZyWALL USG 50 User's Guide 81 Only the remote IPSec device can initiate the VPN tunnel. •...
User Manual
Page 87
... policy route for the policy route.) • Section 6.6 on an interface's IP address, subnet, or gateway. After you configure the trunk, you configure the trunk. When you ZyWALL USG 50 User's Guide 87 For example, if you change . For example, if you want to configure criteria for it is helpful when... you modify the schedule, all the settings or rules that uses these objects to help you can create address objects based on ...
... policy route for the policy route.) • Section 6.6 on an interface's IP address, subnet, or gateway. After you configure the trunk, you configure the trunk. When you ZyWALL USG 50 User's Guide 87 For example, if you change . For example, if you want to configure criteria for it is helpful when... you modify the schedule, all the settings or rules that uses these objects to help you can create address objects based on ...
User Manual
Page 88
... VPN, zones, trunks, DDNS, policy routes, static routes, HTTP redirect, and NAT. Chapter 6 Configuration Basics change an Ethernet interface's IP address, the ZyWALL automatically updates the rules or settings that use physical ports when configuring port groups. Port roles combine physical ports into...53) to configure a new object. Here is a group of zones, interfaces, and physical ports in configuring other features. 88 ZyWALL USG 50 User's Guide Use interfaces in a screen that (layer-3) packets pass through. Figure 52 Zones, Interfaces, and Physical Ethernet Ports ...
... VPN, zones, trunks, DDNS, policy routes, static routes, HTTP redirect, and NAT. Chapter 6 Configuration Basics change an Ethernet interface's IP address, the ZyWALL automatically updates the rules or settings that use physical ports when configuring port groups. Port roles combine physical ports into...53) to configure a new object. Here is a group of zones, interfaces, and physical ports in configuring other features. 88 ZyWALL USG 50 User's Guide Use interfaces in a screen that (layer-3) packets pass through. Figure 52 Zones, Interfaces, and Physical Ethernet Ports ...
User Manual
Page 159
...MAC address is assigned to physical port 1, the second MAC address is assigned to physical port 2, and so on what percentage of the ZyWALL's RAM is . ZyWALL USG 50 User's...change it or the Ethernet interface is currently being used by the ZyWALL. The possible values depend on . Hover your cursor over this ZyWALL. Status This field displays the current status of the ZyWALL...and connected. Down - MAC Address Range This field displays the MAC addresses used . IP Address/ Mask This field displays the current IP address and subnet mask assigned to display...
...MAC address is assigned to physical port 1, the second MAC address is assigned to physical port 2, and so on what percentage of the ZyWALL's RAM is . ZyWALL USG 50 User's...change it or the Ethernet interface is currently being used by the ZyWALL. The possible values depend on . Hover your cursor over this ZyWALL. Status This field displays the current status of the ZyWALL...and connected. Down - MAC Address Range This field displays the MAC addresses used . IP Address/ Mask This field displays the current IP address and subnet mask assigned to display...
User Manual
Page 180
... - Search This button displays when View is set to display or hide details about a destination IP address's sessions. Click this field; Show Select the number of active sessions that is defined. (See... Chapter 37 on each active session. You can use wildcards in this button to change pages. Source If you want to type part of the user name or use the... when View is set to all sessions. The ZyWALL identifies the service by users (or all sessions. This field displays the protocol used in seconds. 180 ZyWALL USG 50 User's Guide to all sessions) report, click...
... - Search This button displays when View is set to display or hide details about a destination IP address's sessions. Click this field; Show Select the number of active sessions that is defined. (See... Chapter 37 on each active session. You can use wildcards in this button to change pages. Source If you want to type part of the user name or use the... when View is set to all sessions. The ZyWALL identifies the service by users (or all sessions. This field displays the protocol used in seconds. 180 ZyWALL USG 50 User's Guide to all sessions) report, click...
User Manual
Page 195
...-infected files that the ZyWALL has Detected detected. Apply Click Apply to save your changes back to its last-saved settings. Refresh Click this button to list the source IP addresses from which the ZyWALL has detected a Detected virus. Select Source IP to discard all of ...Source IP ZyWALL USG 50 User's Guide 195 Reset Click Reset to return the screen to the ZyWALL. The statistics display as follows when you click Apply. Collecting starts over and a new collection start time displays. Flush Data Click this button to list the most common destination IP addresses for...
...-infected files that the ZyWALL has Detected detected. Apply Click Apply to save your changes back to its last-saved settings. Refresh Click this button to list the source IP addresses from which the ZyWALL has detected a Detected virus. Select Source IP to discard all of ...Source IP ZyWALL USG 50 User's Guide 195 Reset Click Reset to return the screen to the ZyWALL. The statistics display as follows when you click Apply. Collecting starts over and a new collection start time displays. Flush Data Click this button to list the most common destination IP addresses for...
User Manual
Page 219
... switch between the port group and other interfaces. • The port group uses a single MAC address. ZyWALL USG 50 User's Guide 219 Chapter 11 Interfaces 1 A port's IP address varies as its role changes, make sure your changes and apply them to the ZyWALL. When you assign more than one physical port to a network, you want to their current configuration...; There is described below. lan1 (LAN1) lan2 (LAN2) dmz (DMZ) These are physical Ethernet ports. The port will use each belongs. Click this button to change the port groups to use the ZyWALL's lan1 IP address and MAC...
... switch between the port group and other interfaces. • The port group uses a single MAC address. ZyWALL USG 50 User's Guide 219 Chapter 11 Interfaces 1 A port's IP address varies as its role changes, make sure your changes and apply them to the ZyWALL. When you assign more than one physical port to a network, you want to their current configuration...; There is described below. lan1 (LAN1) lan2 (LAN2) dmz (DMZ) These are physical Ethernet ports. The port will use each belongs. Click this button to change the port groups to use the ZyWALL's lan1 IP address and MAC...
User Manual
Page 221
... and click Remove. Click Apply to save your changes back to remove it and click Activate. Note: If you can modify the entry's settings. For example, if you can use the entry. ZyWALL USG 50 User's Guide 221 Remove To remove a virtual... where you create IP address objects based on an interface's IP address, subnet, or gateway, the ZyWALL automatically updates every rule or setting that uses the object whenever the interface's IP address settings change LAN1's IP address, the ZyWALL automatically updates the corresponding interface-based, LAN1 subnet address object. See Section...
... and click Remove. Click Apply to save your changes back to remove it and click Activate. Note: If you can modify the entry's settings. For example, if you can use the entry. ZyWALL USG 50 User's Guide 221 Remove To remove a virtual... where you create IP address objects based on an interface's IP address, subnet, or gateway, the ZyWALL automatically updates every rule or setting that uses the object whenever the interface's IP address settings change LAN1's IP address, the ZyWALL automatically updates the corresponding interface-based, LAN1 subnet address object. See Section...
User Manual
Page 225
...alphanumeric and characters, and it does not know how to route the packet to its destination. You use this screen to change the IP address of the IP address is External or General. If you should not select this interface is not used elsewhere. For example, if you may ...need to change the corresponding LAN subnet address object. The subnet mask indicates what part of your LAN interface, you change this interface to the default WAN trunk. The gateway should be on the interface, you use zones to apply security settings such as the interface. ZyWALL USG 50 User's ...
...alphanumeric and characters, and it does not know how to route the packet to its destination. You use this screen to change the IP address of the IP address is External or General. If you should not select this interface is not used elsewhere. For example, if you may ...need to change the corresponding LAN subnet address object. The subnet mask indicates what part of your LAN interface, you change this interface to the default WAN trunk. The gateway should be on the interface, you use zones to apply security settings such as the interface. ZyWALL USG 50 User's ...
User Manual
Page 230
... you change the setting or upload a different configuration file. Either enter the MAC address in the fields or click Clone by host and enter the IP address of object. Once it are cloning. Cancel Click Cancel to exit this interface's Internet connection uses PPPoE or PPTP. The fields shown vary with any entry. 230 ZyWALL USG 50...
... you change the setting or upload a different configuration file. Either enter the MAC address in the fields or click Clone by host and enter the IP address of object. Once it are cloning. Cancel Click Cancel to exit this interface's Internet connection uses PPPoE or PPTP. The fields shown vary with any entry. 230 ZyWALL USG 50...
User Manual
Page 231
... If the referencing configuration item has a description configured, it is applicable, this screen. In addition, the ZyWALL always treats the ISP as your ISP. Priority If it displays here. ZyWALL USG 50 User's Guide 231 They have to create a new ISP account, not a new PPPoE/PPTP interface. Each...the gateway (ISP) using CLI commands but not in the network. You should not have to change ISPs later, you change any network policies. • You do not have an IP address, subnet mask, and gateway used to your ISP account information. If you only have to install...
... If the referencing configuration item has a description configured, it is applicable, this screen. In addition, the ZyWALL always treats the ISP as your ISP. Priority If it displays here. ZyWALL USG 50 User's Guide 231 They have to create a new ISP account, not a new PPPoE/PPTP interface. Each...the gateway (ISP) using CLI commands but not in the network. You should not have to change ISPs later, you change any network policies. • You do not have an IP address, subnet mask, and gateway used to your ISP account information. If you only have to install...
User Manual
Page 238
... known as the air interface. 3.5G Packetswitched HSDPA (High-Speed Downlink Packet Access) is cdmaOne. See Chapter 52 on different subnets. 238 ZyWALL USG 50 User's Guide Multiple Access) as TIA-EIA-95. 2.5G 2.75G Packet- GSM (Global System for higher data transfer speeds. The brand...is also known as IS-856 or High CDMA (Wideband Code Division Data Rate (HDR). To change your 3G WAN settings, click Configuration > Network > Interface > Cellular. Note: The WAN IP addresses of wireless technologies. It is also denoted as 1x, 1xRTT, or IS-2000 and considered to...
... known as the air interface. 3.5G Packetswitched HSDPA (High-Speed Downlink Packet Access) is cdmaOne. See Chapter 52 on different subnets. 238 ZyWALL USG 50 User's Guide Multiple Access) as TIA-EIA-95. 2.5G 2.75G Packet- GSM (Global System for higher data transfer speeds. The brand...is also known as IS-856 or High CDMA (Wideband Code Division Data Rate (HDR). To change your 3G WAN settings, click Configuration > Network > Interface > Cellular. Note: The WAN IP addresses of wireless technologies. It is also denoted as 1x, 1xRTT, or IS-2000 and considered to...
User Manual
Page 247
... IP addresses, subnet masks, and gateways. These rules are limited to smaller, more appropriately for users. ZyWALL USG 50 User's Guide 247 In addition, broadcasts are also independent of the physical network, so you can change the physical network without changing ...of network) is stored in the MAC header. It is layer-2 communication (data link layer, MAC addresses). For example, you can create different content filtering rules for each VLAN (each department in the example ... manageability - The ID is a 12bit value that is layer-3 communication (network layer, IP addresses).
... IP addresses, subnet masks, and gateways. These rules are limited to smaller, more appropriately for users. ZyWALL USG 50 User's Guide 247 In addition, broadcasts are also independent of the physical network, so you can change the physical network without changing ...of network) is stored in the MAC header. It is layer-2 communication (data link layer, MAC addresses). For example, you can create different content filtering rules for each VLAN (each department in the example ... manageability - The ID is a 12bit value that is layer-3 communication (network layer, IP addresses).
User Manual
Page 249
... # This field is a sequential value, and it is not associated with any interface. The following screen appears. Click Apply to save your changes back to a VLAN interface in the VLAN Summary screen. Chapter 11 Interfaces Table 62 Configuration > Network > Interface > VLAN (continued) LABEL ...interface. ZyWALL USG 50 User's Guide 249 Name This field displays the name of the Add column or click an Edit icon next to the ZyWALL. Mask Apply Reset This screen also shows whether the IP address is inactive. If the IP address is 0.0.0.0, the interface does not have an IP address yet...
... # This field is a sequential value, and it is not associated with any interface. The following screen appears. Click Apply to save your changes back to a VLAN interface in the VLAN Summary screen. Chapter 11 Interfaces Table 62 Configuration > Network > Interface > VLAN (continued) LABEL ...interface. ZyWALL USG 50 User's Guide 249 Name This field displays the name of the Add column or click an Edit icon next to the ZyWALL. Mask Apply Reset This screen also shows whether the IP address is inactive. If the IP address is 0.0.0.0, the interface does not have an IP address yet...
User Manual
Page 258
... and click Activate. Click Apply to save your changes back to open a screen where you can create a virtual interface, select an interface and click Create Virtual Interface. IP Address This field displays the current IP address of the interface. Chapter 11 Interfaces 11.7.1 Bridge.... Member Apply Reset This screen also shows whether the IP address is 0.0.0.0, the interface does not have an IP address yet. It is described in the following table. To access this to its last-saved settings. 258 ZyWALL USG 50 User's Guide Figure 164 Configuration > Network > Interface ...
... and click Activate. Click Apply to save your changes back to open a screen where you can create a virtual interface, select an interface and click Create Virtual Interface. IP Address This field displays the current IP address of the interface. Chapter 11 Interfaces 11.7.1 Bridge.... Member Apply Reset This screen also shows whether the IP address is 0.0.0.0, the interface does not have an IP address yet. It is described in the following table. To access this to its last-saved settings. 258 ZyWALL USG 50 User's Guide Figure 164 Configuration > Network > Interface ...
User Manual
Page 264
...Connectivity Check Select this to specify a domain name or IP address for a TCP connectivity check. Gateway Check this address Select this to turn on the connection check. Enter that the gateway allows. OK Click OK to save your changes back to the gateway the first time the gateway passes .... Edit Select an entry and click this screen, click an Add icon next to an Ethernet 264 ZyWALL USG 50 User's Guide Check Method Select the method that domain name or IP address in the field next to it. Check Timeout Enter the number of seconds between connection check attempts. ...
...Connectivity Check Select this to specify a domain name or IP address for a TCP connectivity check. Gateway Check this address Select this to turn on the connection check. Enter that the gateway allows. OK Click OK to save your changes back to the gateway the first time the gateway passes .... Edit Select an entry and click this screen, click an Add icon next to an Ethernet 264 ZyWALL USG 50 User's Guide Check Method Select the method that domain name or IP address in the field next to it. Check Timeout Enter the number of seconds between connection check attempts. ...
User Manual
Page 266
...changes back to exit this screen without saving. 11.8 Interface Technical Reference Here is used to the network. Figure 167 Example: Entry in the Routing Table Derived from the network through the interface to create an entry in kilobits per second, the ZyWALL can enter the IP address...is more detailed information about interfaces on the ZyWALL. If the ZyWALL gets a packet with a destination address of 100.100.25.25, it routes the packet to interface lan1. Ingress Bandwidth This is always 255.255.255.255 266 ZyWALL USG 50 User's Guide Chapter 11 Interfaces Table 69 ...
...changes back to exit this screen without saving. 11.8 Interface Technical Reference Here is used to the network. Figure 167 Example: Entry in the Routing Table Derived from the network through the interface to create an entry in kilobits per second, the ZyWALL can enter the IP address...is more detailed information about interfaces on the ZyWALL. If the ZyWALL gets a packet with a destination address of 100.100.25.25, it routes the packet to interface lan1. Ingress Bandwidth This is always 255.255.255.255 266 ZyWALL USG 50 User's Guide Chapter 11 Interfaces Table 69 ...
User Manual
Page 277
... this to have the ZyWALL use the IP address of the packets it sends out through its last-saved settings. 12.3 Configuring a Trunk Click Configuration > Network > Interface > Trunk and then the Add (or Edit) icon to open the Trunk Edit screen. Figure 173 Configuration > Network > Interface > Trunk > Add (or Edit) ZyWALL USG 50 User's Guide 277...
... this to have the ZyWALL use the IP address of the packets it sends out through its last-saved settings. 12.3 Configuring a Trunk Click Configuration > Network > Interface > Trunk and then the Add (or Edit) icon to open the Trunk Edit screen. Figure 173 Configuration > Network > Interface > Trunk > Add (or Edit) ZyWALL USG 50 User's Guide 277...
User Manual
Page 285
... ordering of your rules is the name of their numbering. This is the number of the source IP address (group) object. To turn off an entry, select it and click Activate. ZyWALL USG 50 User's Guide 285 Use Policy Route to Override Direct Route Add Edit Remove Activate Inactivate Move This ...table describes the labels in this to create a new entry. See Section 6.4.1 on an entry, select it and click Inactivate. This is inactive. To change a rule's position in the numbered list, select the rule and click Move to display a field to create a new entry after the selected entry....
... ordering of your rules is the name of their numbering. This is the number of the source IP address (group) object. To turn off an entry, select it and click Activate. ZyWALL USG 50 User's Guide 285 Use Policy Route to Override Direct Route Add Edit Remove Activate Inactivate Move This ...table describes the labels in this to create a new entry. See Section 6.4.1 on an entry, select it and click Inactivate. This is inactive. To change a rule's position in the numbered list, select the rule and click Move to display a field to create a new entry after the selected entry....