TheGreenBow IPSec VPN Client
Configuration Guide
Router:
WebSite: http://www.thegreenbow.com
Contact: support@thegreenbow.com
Zyxel ZyWall 10
IPSec VPN Router Configuration Property of TheGreenBow Sistech SA - © Sistech 2001-2005 0/12
Doc.Ref tgbvpn_cg_ZyWall10_en
Doc.version 2.0 – Nov.2004
VPN version 2.5x
Table of contents
1 Introduction.................................................................................................................................................... 0
1.1 Goal of this document............................................................................................................................... 0
1.2 Network topology...................................................................................................................................... 0
2 ZyWall VPN Configuration............................................................................................................................. 0
2.1 ZyWall VPN Configuration interface.......................................................................................................... 0
2.2 ZyWall IKE Mode......................................................................................................................................0
2.3 ZyWall Phase 2 IDs................................................................................................................................... 0
2.4 ZyWall Phase 1 IDs................................................................................................................................... 0
2.5 ZyWall IPSec Protocol ..............................................................................................................................0
2.6 ZyWall Authentication and encryption algorithms......................................................................................0
3 TheGreenBow IPSec VPN Client configuration............................................................................................. 0
3.1 VPN Client Phase 1 (IKE) Configuration................................................................................................... 0
3.2 VPN Client Phase 2 (IPSec) Configuration............................................................................................... 0
3.3 Open the IPSec VPN tunnels.................................................................................................................... 0
4 VPN IPSec Troubleshooting.......................................................................................................................... 0
4.1 « PAYLOAD MALFORMED » error.......................................................................................................... 0
4.2 « INVALID COOKIE » error....................................................................................................................... 0
4.3 « no keystate » error................................................................................................................................. 0
4.4 « received remote ID other than expected » error..................................................................................... 0
4.5 « NO PROPOSAL CHOSEN » error......................................................................................................... 0
4.6 « INVALID ID INFORMATION » error....................................................................................................... 0
4.7 I clicked on “Open tunnel”, but nothing happens....................................................................................... 0
4.8 The VPN tunnel is up but I can’t ping !...................................................................................................... 0
5 Contacts......................................................................................................................................................... 0
IPSec VPN Router Configuration Property of TheGreenBow Sistech SA - © Sistech 2001-2005 2/12
Doc.Ref tgbvpn_cg_ZyWall10_en
Doc.version 2.0 – Nov.2004
VPN version 2.5x
1 Introduction
1.1 Goal of this document
This document describes how to configure TheGreenBow VPN Client with a Zyxel ZyWall 10.
1.2 Network topology
In our example, we will connect TheGreenBow VPN client to the LAN behind the Zyxel ZyWall Router. The VPN
client is connected to the Internet by a dialup connection fr om an ISP. The client will have a virtual IP addre ss in
the remote LAN. All the addresses in this document are given for example purpose.
80.11.8.4
Internet
192.168.1.1 155.2.4.36
Zyxel
ZyWall 10
192.168.100.57
192.168.1.3
192.168.1.78
IPSec VPN Router Configuration Property of TheGreenBow Sistech SA - © Sistech 2001-2005 3/12
Doc.Ref tgbvpn_cg_ZyWall10_en
Doc.version 2.0 – Nov.2004
VPN version 2.5x
2 ZyWall VPN Configuration
ZyNOS Firmware version release of the Zyxel ZyWall 10 used during tests was ZyNOS 3.52 (WA.3) |
05/28/2003.
2.1 ZyWall VPN Configuration interface
Zywall VPN configuration can be achieved with a web browser. Read Zyxel ZyWA LL 10 documentation for mor e
information.
Once connected to your VPN gatew ay, click on "VPN" link in the Zyxel ZyWALL 10 VPN configuration interface.
Select a VPN connection and click on "Edit":
2.2 ZyWall IKE Mode
Click on "Active". Select "IKE" and "Main" if you want to use IKE Main mode exchange.
IPSec VPN Router Configuration Property of TheGreenBow Sistech SA - © Sistech 2001-2005 4/12