Inhaltszusammenfassung zur Seite Nr. 1
ZyWALL 5/35/70 Series
Internet Security Appliance
User’s Guide
Version 4.00
12/2005
Inhaltszusammenfassung zur Seite Nr. 2
ZyWALL 5/35/70 Series User’s Guide Copyright Copyright © 2005 by ZyXEL Communications Corporation. The contents of this publication may not be reproduced in any part or as a whole, transcribed, stored in a retrieval system, translated into any language, or transmitted in any form or by any means, electronic, mechanical, magnetic, optical, chemical, photocopying, manual, or otherwise, without the prior written permission of ZyXEL Communications Corporation. Published by ZyXEL Communications Co
Inhaltszusammenfassung zur Seite Nr. 3
ZyWALL 5/35/70 Series User’s Guide Federal Communications Commission (FCC) Interference Statement This device complies with Part 15 of FCC rules. Operation is subject to the following two conditions: • This device may not cause harmful interference. • This device must accept any interference received, including interference that may cause undesired operations. This equipment has been tested and found to comply with the limits for a Class B digital device pursuant to Part 15 of the FCC Rules
Inhaltszusammenfassung zur Seite Nr. 4
ZyWALL 5/35/70 Series User’s Guide Federal Communications Commission (FCC) Interference Statement 4
Inhaltszusammenfassung zur Seite Nr. 5
ZyWALL 5/35/70 Series User’s Guide Safety Warnings For your safety, be sure to read and follow all warning notices and instructions. • Do NOT open the device or unit. Opening or removing covers can expose you to dangerous high voltage points or other risks. ONLY qualified service personnel can service the device. Please contact your vendor for further information. • Connect the power cord to the right supply voltage (110V AC in North America or 230V AC in Europe). • Place connecting cables ca
Inhaltszusammenfassung zur Seite Nr. 6
ZyWALL 5/35/70 Series User’s Guide ZyXEL Limited Warranty ZyXEL warrants to the original end user (purchaser) that this product is free from any defects in materials or workmanship for a period of up to two years from the date of purchase. During the warranty period, and upon proof of purchase, should the product have indications of failure due to faulty workmanship and/or materials, ZyXEL will, at its discretion, repair or replace the defective products or components without charge for eith
Inhaltszusammenfassung zur Seite Nr. 7
ZyWALL 5/35/70 Series User’s Guide Customer Support Please have the following information ready when you contact customer support. • Product model and serial number. • Warranty Information. • Date that you received your device. • Brief description of the problem and the steps you took to solve it. A METHOD SUPPORT E-MAIL TELEPHONE WEB SITE REGULAR MAIL SALES E-MAIL FAX FTP SITE LOCATION support@zyxel.com.tw +886-3-578-3942 www.zyxel.com ZyXEL Communications Corp. CORPORATE www.europe.zyxel.com
Inhaltszusammenfassung zur Seite Nr. 8
ZyWALL 5/35/70 Series User’s Guide A METHOD SUPPORT E-MAIL TELEPHONE WEB SITE REGULAR MAIL SALES E-MAIL FAX FTP SITE LOCATION info@pl.zyxel.com +48-22-5286603 www.pl.zyxel.com ZyXEL Communications ul.Emilli Plater 53 POLAND +48-22-5206701 00-113 Warszawa Poland http://zyxel.ru/support +7-095-542-89-29 www.zyxel.ru ZyXEL Russia Ostrovityanova 37a Str. RUSSIA sales@zyxel.ru +7-095-542-89-25 Moscow, 117279 Russia support@zyxel.es +34-902-195-420 www.zyxel.es ZyXEL Communications Alejandro Vi
Inhaltszusammenfassung zur Seite Nr. 9
ZyWALL 5/35/70 Series User’s Guide 9 Customer Support
Inhaltszusammenfassung zur Seite Nr. 10
ZyWALL 5/35/70 Series User’s Guide Table of Contents Copyright .................................................................................................................. 2 Federal Communications Commission (FCC) Interference Statement ............... 3 Safety Warnings ....................................................................................................... 5 ZyXEL Limited Warranty.......................................................................................... 6 Cu
Inhaltszusammenfassung zur Seite Nr. 11
ZyWALL 5/35/70 Series User’s Guide 2.4.5 Show Statistics: Line Chart........................................................................80 2.4.6 DHCP Table Screen ..................................................................................81 2.4.7 VPN Status ................................................................................................82 Chapter 3 Wizard Setup .......................................................................................................... 84
Inhaltszusammenfassung zur Seite Nr. 12
ZyWALL 5/35/70 Series User’s Guide Chapter 6 Bridge Screens..................................................................................................... 122 6.1 Bridge Loop ......................................................................................................122 6.2 Spanning Tree Protocol (STP) .........................................................................122 6.2.1 Rapid STP .......................................................................................
Inhaltszusammenfassung zur Seite Nr. 13
ZyWALL 5/35/70 Series User’s Guide 7.17 Configuring Advanced Modem Setup ............................................................159 Chapter 8 DMZ Screens ........................................................................................................ 162 8.1 DMZ .................................................................................................................162 8.2 Configuring DMZ .......................................................................................
Inhaltszusammenfassung zur Seite Nr. 14
ZyWALL 5/35/70 Series User’s Guide 9.16.4 IEEE 802.1x + Dynamic WEP ..............................................................196 9.16.5 IEEE 802.1x + Static WEP ....................................................................197 9.16.6 IEEE 802.1x + No WEP ........................................................................198 9.16.7 No Access 802.1x + Static WEP ...........................................................199 9.16.8 No Access 802.1x + No WEP .........................
Inhaltszusammenfassung zur Seite Nr. 15
ZyWALL 5/35/70 Series User’s Guide 11.3.3.2 Service .........................................................................................217 11.3.3.3 Source Address ...........................................................................217 11.3.3.4 Destination Address ....................................................................217 11.4 Connection Direction Examples .....................................................................217 11.4.1 LAN To WAN Rules ...................
Inhaltszusammenfassung zur Seite Nr. 16
ZyWALL 5/35/70 Series User’s Guide 13.3.3 Signature Actions ..................................................................................248 13.3.4 Configuring IDP Signatures ..................................................................249 13.3.5 Query View ...........................................................................................251 13.3.5.1 Query Example 1 ........................................................................251 13.3.5.2 Query Example 2 ...........
Inhaltszusammenfassung zur Seite Nr. 17
ZyWALL 5/35/70 Series User’s Guide Chapter 16 Content Filtering Screens ................................................................................... 278 16.1 Content Filtering Overview .............................................................................278 16.1.1 Restrict Web Features ..........................................................................278 16.1.2 Create a Filter List ................................................................................278 16.1.3 C
Inhaltszusammenfassung zur Seite Nr. 18
ZyWALL 5/35/70 Series User’s Guide Chapter 19 VPN Screens......................................................................................................... 308 19.1 VPN/IPSec Overview .....................................................................................308 19.2 IPSec Algorithms ............................................................................................308 19.2.1 AH (Authentication Header) Protocol ....................................................308 19.
Inhaltszusammenfassung zur Seite Nr. 19
ZyWALL 5/35/70 Series User’s Guide 20.5.1 Certificate File Formats .........................................................................346 20.6 My Certificate Create ...................................................................................347 20.7 My Certificate Details ...................................................................................350 20.8 Trusted CAs .................................................................................................353 20.
Inhaltszusammenfassung zur Seite Nr. 20
ZyWALL 5/35/70 Series User’s Guide 22.7 Port Triggering ..............................................................................................388 Chapter 23 Static Route .......................................................................................................... 392 23.1 IP Static Route ............................................................................................392 23.2 IP Static Route ....................................................................