User Manual
Page 96
.... Most of the features that use interfaces support Ethernet, PPPoE/PPTP, cellular, VLAN, and bridge interfaces. MENU ITEM(S) Configuration > Network > Interface (except Network > Interface > Trunk) PREREQUISITES Port groups (configured in the Interface > Port Grouping screen) WHERE USED Zones, trunks, IPSec VPN...HTTP redirect, NAT, application patrol Example: The dmz interface is no security applied on page 88 for background information. To configure dmz's settings, click Network > Interface > Ethernet and then the dmz's Edit icon. 96 ZyWALL USG 50 User's Guide Note: When you...
.... Most of the features that use interfaces support Ethernet, PPPoE/PPTP, cellular, VLAN, and bridge interfaces. MENU ITEM(S) Configuration > Network > Interface (except Network > Interface > Trunk) PREREQUISITES Port groups (configured in the Interface > Port Grouping screen) WHERE USED Zones, trunks, IPSec VPN...HTTP redirect, NAT, application patrol Example: The dmz interface is no security applied on page 88 for background information. To configure dmz's settings, click Network > Interface > Ethernet and then the dmz's Edit icon. 96 ZyWALL USG 50 User's Guide Note: When you...
User Manual
Page 215
... 11.1 Interface Overview Use the Interface screens to the ZyWALL. Each VLAN can only be associated with one Ethernet interface. • Use the Bridge screens (Section 11.7 on page 219) to configure the Ethernet interfaces. ZyWALL USG 50 User's Guide 215 You use them in this Chapter ...• Use the Port Role screens (Section 11.2 on page 218) to create port groups and to assign physical ports and port groups to Ethernet interfaces. • Use the Ethernet screens (Section 11.3 on page 256) to route packets. For example...
... 11.1 Interface Overview Use the Interface screens to the ZyWALL. Each VLAN can only be associated with one Ethernet interface. • Use the Bridge screens (Section 11.7 on page 219) to configure the Ethernet interfaces. ZyWALL USG 50 User's Guide 215 You use them in this Chapter ...• Use the Port Role screens (Section 11.2 on page 218) to create port groups and to assign physical ports and port groups to Ethernet interfaces. • Use the Ethernet screens (Section 11.3 on page 256) to route packets. For example...
User Manual
Page 216
...8226; An interface is a logical entity through which (layer-3) packets pass. • An interface is a kind of interface. There are for example) is bound to a physical port or another interface. • Many interfaces can share the same physical port. • An interface belongs ... defining other types of some security features in these interfaces. • VLAN interfaces receive and send tagged frames. Types of Interfaces You can take advantage of interfaces--Ethernet, PPP, cellular, VLAN, bridge, and 216 ZyWALL USG 50 User's Guide RIP and OSPF are also configured in the...
...8226; An interface is a logical entity through which (layer-3) packets pass. • An interface is a kind of interface. There are for example) is bound to a physical port or another interface. • Many interfaces can share the same physical port. • An interface belongs ... defining other types of some security features in these interfaces. • VLAN interfaces receive and send tagged frames. Types of Interfaces You can take advantage of interfaces--Ethernet, PPP, cellular, VLAN, bridge, and 216 ZyWALL USG 50 User's Guide RIP and OSPF are also configured in the...
User Manual
Page 217
.... For example, virtual interfaces created on Ethernet interface wan1 are created directly on . You cannot specify the number after the colon if you enter in the Web Configurator; You can specify the number after the colon(:) in the VLAN name field...INTERFACE port group physical port Ethernet interface physical port VLAN interface bridge interface port group Ethernet interface Ethernet interface* VLAN interface* ZyWALL USG 50 User's Guide 217 For most interfaces, x is strict. Relationships Between Interfaces In the ZyWALL, interfaces are called wan1:1, wan1:2, and so on...
.... For example, virtual interfaces created on Ethernet interface wan1 are created directly on . You cannot specify the number after the colon if you enter in the Web Configurator; You can specify the number after the colon(:) in the VLAN name field...INTERFACE port group physical port Ethernet interface physical port VLAN interface bridge interface port group Ethernet interface Ethernet interface* VLAN interface* ZyWALL USG 50 User's Guide 217 For most interfaces, x is strict. Relationships Between Interfaces In the ZyWALL, interfaces are called wan1:1, wan1:2, and so on...
User Manual
Page 218
...or VLAN interface to a lan1, lan2 or dmz port and change the port's role: 218 ZyWALL USG 50 User's Guide You cannot set the ZyWALL's ...flexible ports as part of it. Finding Out More • See Section 6.2 on page 88 details on the differences between the physical ports at the layer-2 (data link, MAC address) level. Note the following if you are configuring... page 109 for an example of configuring Ethernet interfaces, port role, and zones. • See Section 7.2 on page 113 for an example of configuring a cellular (3G) ...
...or VLAN interface to a lan1, lan2 or dmz port and change the port's role: 218 ZyWALL USG 50 User's Guide You cannot set the ZyWALL's ...flexible ports as part of it. Finding Out More • See Section 6.2 on page 88 details on the differences between the physical ports at the layer-2 (data link, MAC address) level. Note the following if you are configuring... page 109 for an example of configuring Ethernet interfaces, port role, and zones. • See Section 7.2 on page 113 for an example of configuring a cellular (3G) ...
User Manual
Page 246
... alert for this screen without saving. 11.6 VLAN Interfaces A Virtual Local Area Network (VLAN) divides a physical network into three VLANs. 246 ZyWALL USG 50 User's Guide The standard is exceeded. Alternatively, you configure and enable budget control, the ZyWALL resets the statistics. Click Cancel to create an alert log. Figure 160 Example: Before VLAN A B C In this action, Log to create...
... alert for this screen without saving. 11.6 VLAN Interfaces A Virtual Local Area Network (VLAN) divides a physical network into three VLANs. 246 ZyWALL USG 50 User's Guide The standard is exceeded. Alternatively, you configure and enable budget control, the ZyWALL resets the statistics. Click Cancel to create an alert log. Figure 160 Example: Before VLAN A B C In this action, Log to create...
User Manual
Page 249
... with any interface. ZyWALL USG 50 User's Guide 249 Port/VID For VLAN interfaces, this field is blank. Chapter 11 Interfaces Table 62 Configuration > Network > Interface > VLAN (continued) LABEL DESCRIPTION Object Select an entry and click Object References to a VLAN interface in the VLAN Summary screen. See ... to save your changes back to its last-saved settings. 11.6.2 VLAN Add/Edit This screen lets you configure IP address assignment, interface bandwidth parameters, DHCP settings, and connectivity check for an example. # This field is a sequential value, and it is 0.0.0.0, the...
... with any interface. ZyWALL USG 50 User's Guide 249 Port/VID For VLAN interfaces, this field is blank. Chapter 11 Interfaces Table 62 Configuration > Network > Interface > VLAN (continued) LABEL DESCRIPTION Object Select an entry and click Object References to a VLAN interface in the VLAN Summary screen. See ... to save your changes back to its last-saved settings. 11.6.2 VLAN Add/Edit This screen lets you configure IP address assignment, interface bandwidth parameters, DHCP settings, and connectivity check for an example. # This field is a sequential value, and it is 0.0.0.0, the...
User Manual
Page 251
...example, vlan0, vlan8, and so on page 693. Base Port Select the Ethernet interface on which the VLAN interface belongs. This 12-bit number uniquely identifies each VLAN. In this if you are reserved.) Description Enter a description of this interface. Select this case, the DHCP server configures...for the total number of configuration Settings / Hide fields. The subnet mask indicates what part of the gateway. This field is assigned to the gateway when it can be on the ZyWALL. ZyWALL USG 50 User's Guide 251 VLAN ID Enter the VLAN ID. Gateway Enter the subnet...
...example, vlan0, vlan8, and so on page 693. Base Port Select the Ethernet interface on which the VLAN interface belongs. This 12-bit number uniquely identifies each VLAN. In this if you are reserved.) Description Enter a description of this interface. Select this case, the DHCP server configures...for the total number of configuration Settings / Hide fields. The subnet mask indicates what part of the gateway. This field is assigned to the gateway when it can be on the ZyWALL. ZyWALL USG 50 User's Guide 251 VLAN ID Enter the VLAN ID. Gateway Enter the subnet...
User Manual
Page 253
...must also be on your network and the IP addresses that they are : None - From ISP - For example, if the Subnet Mask is 255.255.255.0 and IP Pool Start Address is optional. First DNS Server...from its DHCP server. enter a static IP address. ZyWALL - Chapter 11 Interfaces Table 63 Configuration > Network > Interface > VLAN > Edit (continued) LABEL DESCRIPTION DHCP Select what type of DHCP service the ZyWALL provides to specify these IP addresses. Choices are currently... the DHCP clients to a specific computer, click Add Static DHCP. ZyWALL USG 50 User's Guide 253
...must also be on your network and the IP addresses that they are : None - From ISP - For example, if the Subnet Mask is 255.255.255.0 and IP Pool Start Address is optional. First DNS Server...from its DHCP server. enter a static IP address. ZyWALL - Chapter 11 Interfaces Table 63 Configuration > Network > Interface > VLAN > Edit (continued) LABEL DESCRIPTION DHCP Select what type of DHCP service the ZyWALL provides to specify these IP addresses. Choices are currently... the DHCP clients to a specific computer, click Add Static DHCP. ZyWALL USG 50 User's Guide 253
User Manual
Page 258
... field displays the name of the interface. It is blank for an example. # This field is not associated with any interface. Click Reset to return the screen to the ZyWALL. Status This icon is lit when the entry is active and dimmed ...DHCP). Table 67 Configuration > Network > Interface > Bridge LABEL DESCRIPTION Add Click this screen, click Configuration > Network > Interface > Bridge. Click Apply to save your changes back to its last-saved settings. 258 ZyWALL USG 50 User's Guide This field displays the Ethernet interfaces and VLAN interfaces in the ...
... field displays the name of the interface. It is blank for an example. # This field is not associated with any interface. Click Reset to return the screen to the ZyWALL. Status This icon is lit when the entry is active and dimmed ...DHCP). Table 67 Configuration > Network > Interface > Bridge LABEL DESCRIPTION Add Click this screen, click Configuration > Network > Interface > Bridge. Click Apply to save your changes back to its last-saved settings. 258 ZyWALL USG 50 User's Guide This field displays the Ethernet interfaces and VLAN interfaces in the ...
User Manual
Page 261
... and characters, and it can become part of it to the bridge interface. Member Configuration Available This field displays Ethernet interfaces and VLAN interfaces that are editing the interface. Select one VLAN interface. The format is brx, where x is not used in the table below....such as firewall, IDP, remote management, anti-virus, and application patrol. It is 0 - 11. For example, br0, br3, and so on top of the bridge interface. Table 68 Configuration > Network > Interface > Bridge > Edit LABEL DESCRIPTION Show Advance Click this interface. Clear this to enable ...
... and characters, and it can become part of it to the bridge interface. Member Configuration Available This field displays Ethernet interfaces and VLAN interfaces that are editing the interface. Select one VLAN interface. The format is brx, where x is not used in the table below....such as firewall, IDP, remote management, anti-virus, and application patrol. It is 0 - 11. For example, br0, br3, and so on top of the bridge interface. Table 68 Configuration > Network > Interface > Bridge > Edit LABEL DESCRIPTION Show Advance Click this interface. Clear this to enable ...
User Manual
Page 311
Figure 187 Example: Zones 15.1.1 What You Can Do in the ZyWALL. The ZyWALL uses zones instead of interfaces and/or VPN tunnels. Zones cannot overlap. ZyWALL USG 50 User's Guide 311 CHAPTER 15 Zones 15.1 Zones Overview Set up zones to configure network security and network policies in ...this Chapter Use the Zone screens (see Section 15.2 on which they run. Each Ethernet interface, VLAN interface, bridge interface,...
Figure 187 Example: Zones 15.1.1 What You Can Do in the ZyWALL. The ZyWALL uses zones instead of interfaces and/or VPN tunnels. Zones cannot overlap. ZyWALL USG 50 User's Guide 311 CHAPTER 15 Zones 15.1 Zones Overview Set up zones to configure network security and network policies in ...this Chapter Use the Zone screens (see Section 15.2 on which they run. Each Ethernet interface, VLAN interface, bridge interface,...
User Manual
Page 312
...between interfaces or VPN tunnels in different zones. Intra-zone Traffic • Intra-zone traffic is traffic between VLAN 1 and the Internet is inter-zone traffic. For example, in Figure 187 on page 311, traffic between interfaces or VPN tunnels in them to Any or All. ... set up firewall rules to control intra-zone traffic (for example, DMZto-DMZ), but many other types of configuring Ethernet interfaces, port groups, and zones. 312 ZyWALL USG 50 User's Guide Inter-zone Traffic Inter-zone traffic is traffic between VLAN 2 and the Ethernet is extra-zone traffic. • Some...
...between interfaces or VPN tunnels in different zones. Intra-zone Traffic • Intra-zone traffic is traffic between VLAN 1 and the Internet is inter-zone traffic. For example, in Figure 187 on page 311, traffic between interfaces or VPN tunnels in them to Any or All. ... set up firewall rules to control intra-zone traffic (for example, DMZto-DMZ), but many other types of configuring Ethernet interfaces, port groups, and zones. 312 ZyWALL USG 50 User's Guide Inter-zone Traffic Inter-zone traffic is traffic between VLAN 2 and the Ethernet is extra-zone traffic. • Some...
User Manual
Page 325
... on a WAN interface even if it eases configuration effort since you have a range of private network servers that will initiate sessions to the outside clients, select this NAT rule supports. The private and public ranges must be an Ethernet, VLAN, bridge, or PPPoE/PPTP interface. Incoming Interface...the outside clients use to create a virtual interface for the NAT rule must have the same number of IP addresses. ZyWALL USG 50 User's Guide 325 For example, you select one of the packets received by the address object. Type the destination IP address that this to have ...
... on a WAN interface even if it eases configuration effort since you have a range of private network servers that will initiate sessions to the outside clients, select this NAT rule supports. The private and public ranges must be an Ethernet, VLAN, bridge, or PPPoE/PPTP interface. Incoming Interface...the outside clients use to create a virtual interface for the NAT rule must have the same number of IP addresses. ZyWALL USG 50 User's Guide 325 For example, you select one of the packets received by the address object. Type the destination IP address that this to have ...
User Manual
Page 378
... If the ZyWALL is in server mode, you can select an Ethernet interface, virtual Ethernet interface, VLAN interface, or virtual VLAN interface to specify what address the ZyWALL uses as ... you activate / deactivate and connect / disconnect each VPN connection (each IPSec 378 ZyWALL USG 50 User's Guide The VPN Connection screen lists the VPN connection policies and their associated VPN... The VPN Connection Screen Click Configuration > VPN > IPSec VPN to authenticate each other 's certificates. It also gives some basic suggestions for an example of configuring IPSec VPN. 23.1.3 Before You...
... If the ZyWALL is in server mode, you can select an Ethernet interface, virtual Ethernet interface, VLAN interface, or virtual VLAN interface to specify what address the ZyWALL uses as ... you activate / deactivate and connect / disconnect each VPN connection (each IPSec 378 ZyWALL USG 50 User's Guide The VPN Connection screen lists the VPN connection policies and their associated VPN... The VPN Connection Screen Click Configuration > VPN > IPSec VPN to authenticate each other 's certificates. It also gives some basic suggestions for an example of configuring IPSec VPN. 23.1.3 Before You...
User Manual
Page 393
...example, "0x0123456789ABCDEF" is the specified IP address or the IP address corresponding to try if it cannot establish an IKE SA with the first one. Type the pre-shared key in the IKE SA is in ASCII format. Peer Gateway Address If you select Interface, select the Ethernet interface, VLAN.... Chapter 23 IPSec VPN Table 116 Configuration > VPN > IPSec VPN > VPN Gateway > Edit (continued) LABEL DESCRIPTION My Address Select how the IP address of the ZyWALL in hexadecimal, type "0x" at the beginning of the key. ZyWALL USG 50 User's Guide 393 The preshared key ...
...example, "0x0123456789ABCDEF" is the specified IP address or the IP address corresponding to try if it cannot establish an IKE SA with the first one. Type the pre-shared key in the IKE SA is in ASCII format. Peer Gateway Address If you select Interface, select the Ethernet interface, VLAN.... Chapter 23 IPSec VPN Table 116 Configuration > VPN > IPSec VPN > VPN Gateway > Edit (continued) LABEL DESCRIPTION My Address Select how the IP address of the ZyWALL in hexadecimal, type "0x" at the beginning of the key. ZyWALL USG 50 User's Guide 393 The preshared key ...
User Manual
Page 761
...create an interface, there is a sequential number. For example, VLAN interfaces are called wan1:1, wan1:2, and so on it until you use the CLI to zones. I cannot enter the interface name I configured security settings but the ZyWALL is very strict. You cannot specify the number after ...the maximum number of each type of interface names other rules that they are called vlan2:1, vlan2:2, and so on VLAN interface vlan2 are vlan0, vlan1, vlan2, ...; ZyWALL USG 50 User's Guide 761 When you assign the interfaces to a zone. it to the appropriate zones. Purchase a new ...
...create an interface, there is a sequential number. For example, VLAN interfaces are called wan1:1, wan1:2, and so on it until you use the CLI to zones. I cannot enter the interface name I configured security settings but the ZyWALL is very strict. You cannot specify the number after ...the maximum number of each type of interface names other rules that they are called vlan2:1, vlan2:2, and so on VLAN interface vlan2 are vlan0, vlan1, vlan2, ...; ZyWALL USG 50 User's Guide 761 When you assign the interfaces to a zone. it to the appropriate zones. Purchase a new ...
User Manual
Page 762
...interface. Chapter 51 Troubleshooting I cannot set up a PPP interface, virtual Ethernet interface or virtual VLAN interface on top of a bridge. To avoid this create an IP address object based on ... have changed. I expected. This way the ZyWALL automatically updates every rule or setting that apply to the service provider's base station, and so on. For example, if you use, the signal strength to ...has the correct user name, password, and PIN code configured with the correct casing. 762 ZyWALL USG 50 User's Guide The actual cellular data rate you obtain varies depending on ...
...interface. Chapter 51 Troubleshooting I cannot set up a PPP interface, virtual Ethernet interface or virtual VLAN interface on top of a bridge. To avoid this create an IP address object based on ... have changed. I expected. This way the ZyWALL automatically updates every rule or setting that apply to the service provider's base station, and so on. For example, if you use, the signal strength to ...has the correct user name, password, and PIN code configured with the correct casing. 762 ZyWALL USG 50 User's Guide The actual cellular data rate you obtain varies depending on ...
User Manual
Page 943
...WWW 691 and address groups 695 and address objects 695 and authentication method objects 694 and certificates 693 and zones 695 see WINS. VLAN interfaces 216, 248 and Ethernet interfaces 248, 763 basic characteristics 217 VoIP pass through 342 and firewall 338 and NAT 338 and policy... users 596 requirements 43 supported browsers 43 ZyWALL USG 50 User's Guide Index web features ActiveX 554 cookies 554 Java 554 web proxy servers 554 web proxy servers 332, 554 see also HTTP redirect web site ZyXEL 4 web-based SSL application 659 configuration example 660 create 662 weblink 660 webroot-directory-...
...WWW 691 and address groups 695 and address objects 695 and authentication method objects 694 and certificates 693 and zones 695 see WINS. VLAN interfaces 216, 248 and Ethernet interfaces 248, 763 basic characteristics 217 VoIP pass through 342 and firewall 338 and NAT 338 and policy... users 596 requirements 43 supported browsers 43 ZyWALL USG 50 User's Guide Index web features ActiveX 554 cookies 554 Java 554 web proxy servers 554 web proxy servers 332, 554 see also HTTP redirect web site ZyXEL 4 web-based SSL application 659 configuration example 660 create 662 weblink 660 webroot-directory-...