Note: Not all ZyXEL Prestige provide VPN functionality. Please check the User's Manual from the packaged CD-ROM.
This page guides us to setup a VPN connection between the VPN software and Prestige router. There will be several devices we need to setup for this case. They are VPN software and Prestige router.
As the figure shown below, the tunnel between PC 1 and Prestige ensures the packets flow between them are secure. Because the packets go through the IPSec tunnel are encrypted. To setup this VPN tunnel, the required settings for the software and Prestige are explained in the following sections.
The IP addresses we use in this example are as shown below.
PC 1 |
Prestige | PC2 |
202.132.155.33 | LAN: 202.132.171.1 WAN: 202.132.170.1 |
202.132.171.33 |
1. Open Soft-PK Security Policy Editor
2. Add a new connection named 'Prestige' as shown below.
3. Select Connection Security to Secure
Remote Party Identity and Addressing settings:
4. In ID Type option, please choose IP Address
option, and enter the IP address of the remote PC (PC 2 in this case).
5. Check Connect using Secure Gateway Tunnel, please also select IP
Address as ID Type, and enter Prestige's WAN
IP address in the following field.
The detailed configuration is shown in the following figure.
Pre-Share Key Settings:
6. Extend Prestige icon, you may see My Identity.
7. Click My Identity, click the Pre-Shared Key icon in
the right side of the window.
8. Enter a key you that later you will also need to configure in Prestige in the pop
out windows. In this example, we enter
12345678. See below.
Security Policy Settings:
9. Click Security Policy option to choose Main Mode as Phase 1
Negotiation Mode
10. Extend Security Policy icon, you will see two icons, Authentication
(Phase 1) and Key Exchange (Phase 2).
11. The settings shown in the following two figures for both Phases are our examples. You
can choose any, but they should
match whatever you enter in Prestige.
Figure 8: See the VPN rule screen shot
If you use SMT management, the VPN configurations are as shown below.
1. Edit IKE settings by selecting 'Edit IKE Setup' option
in menu27.1.1 to 'Yes' and then pressing 'Enter'.
2. There are two phases for IKE:
In Phase 1, two IKE peers establish a secure channel for
key exchanging.
In Phase 2, two peers negotiate general purpose SAs which are secure channels for data
transmission.
Please note that any configuration in 'IKE Setup' should
match the settings in VPN software.