Default Login Details
User’s Guide
ZyWALL ATP Series
LAN Port IP Address https://192.168.1.1
User Name admin
Password 1234
Version 4.32 Edition 2, 11/2018
Copyright © 2018 Zyxel Communications Corporation
IMPORTANT!
READ CAREFULLY BEFORE USE.
KEEP THIS GUIDE FOR FUTURE REFERENCE.
This is a User’s Guide for a series of products. Not all products support all firmware features. Screenshots
and graphics in this book may differ slightly from your product due to differences in product features or
web configurator brand style. Every effort has been made to ensure that the information in this manual
is accurate.
The version number on the cover page refers to the latest firmware version supported by the
Zyxel Device.
Related Documentation
•Quick Start Guide
The Quick Start Guide shows how to connect the Zyxel Device and access the Web Configurator
wizards. (See the wizard real time help for information on configuring each screen.) It also contains a
connection diagram and package contents list.
•CLI Reference Guide
The CLI Reference Guide explains how to use the Command-Line Interface (CLI) to configure the
Zyxel Device.
Note: It is recommended you use the Web Configurator to configure the Zyxel Device.
• Web Configurator Online Help
Click the help icon in any screen for help in configuring that screen and supplementary information.
•More Information
Go to support.zyxel.com to find other information on
Zyxel Device.
ZyWALL ATP Series User’s Guide
2
Document Conventions
Warnings and Notes
These are how warnings and notes are shown in this guide.
Warnings tell you about things that could harm you or your device.
Note: Notes tell you other important information (for example, other things you may need to
configure or helpful tips) or recommendations.
Syntax Conventions
• All models in this series may be referred to as the “Zyxel Device” in this guide.
• Product labels, screen names, field labels and field choices are all in bold font.
• A right angle bracket ( > ) within a screen name denotes a mouse click. For example, Configuration >
Network > Interface > Ethernet means you first click Configuration in the navigation panel, then
Network, then the Interface sub menu and finally the Ethernet tab to get to that screen.
Icons Used in Figures
Figures in this user guide may use the following generic icons. The Zyxel Device icon is not an exact
representation of your device.
Zyxel Device Generic Router Wireless Router / Access Point
Switch Firewall Server
Internet Network Cloud Smartphone
USB Dongle
ZyWALL ATP Series User’s Guide
3
Contents Overview
Contents Overview
Introduction ........................................................................................................................................... 24
Initial Setup Wizard ............................................................................................................................... 47
Hardware, Interfaces and Zones ........................................................................................................ 64
Quick Setup Wizards ............................................................................................................................. 70
Dashboard .......................................................................................................................................... 104
Monitor ................................................................................................................................................. 114
Licensing .............................................................................................................................................. 179
Wireless ................................................................................................................................................. 184
Interfaces ............................................................................................................................................. 205
Routing ................................................................................................................................................. 299
DDNS ................................................................................................................................................... 326
NAT ....................................................................................................................................................... 332
Redirect Service .................................................................................................................................. 340
ALG ....................................................................................................................................................... 346
UPnP ..................................................................................................................................................... 353
IP/MAC Binding ................................................................................................................................... 362
Layer 2 Isolation .................................................................................................................................. 367
DNS Inbound LB .................................................................................................................................. 371
IPnP ....................................................................................................................................................... 377
IPSec VPN ............................................................................................................................................ 379
SSL VPN ................................................................................................................................................ 415
L2TP VPN .............................................................................................................................................. 421
BWM (Bandwidth Management) ..................................................................................................426
Web Authentication .......................................................................................................................... 441
Security Policy ..................................................................................................................................... 470
Application Patrol ............................................................................................................................... 496
Content Filter ....................................................................................................................................... 505
Anti-Malware ....................................................................................................................................... 524
Botnet Filter .......................................................................................................................................... 533
IDP ........................................................................................................................................................ 537
Sandboxing ......................................................................................................................................... 554
Email Security ...................................................................................................................................... 556
SSL Inspection ...................................................................................................................................... 567
Object .................................................................................................................................................. 579
Device HA ........................................................................................................................................... 675
Cloud CNM ........................................................................................................................................ 682
System .................................................................................................................................................. 689
Log and Report ................................................................................................................................... 749
File Manager ....................................................................................................................................... 762
ZyWALL ATP Series User’s Guide
4
Contents Overview
Diagnostics ......................................................................................................................................... 777
Packet Flow Explore .......................................................................................................................... 794
Shutdown ............................................................................................................................................. 801
Troubleshooting .................................................................................................................................. 802
ZyWALL ATP Series User’s Guide
5
Table of Contents
Table of Contents
Document Conventions ............................................ ............................................ .... ... .......................3
Contents Overview .............................................................................................................................4
Table of Contents.................................................................................................................................6
Part I: User’s Guide.......................................................................................... 23
Chapter 1
Introduction ........................................................................................................................................24
1.1 Overview ......................................................................................................................................... 24
1.2 Registration at myZyxel .................................................................................................................. 24
1.2.1 Grace Period ......................................................................................................................... 25
1.2.2 Applications ........................................................................................................................... 25
1.3 Management Overview ................................................................................................................ 28
1.4 Web Configurator ........................................................................................................................... 29
1.4.1 Web Configurator Access .................................................................................................... 30
1.4.2 Web Configurator Screens Overview ................................................................................. 33
1.4.3 Navigation Panel .................................................................................................................. 36
1.4.4 Tables and Lists ...................................................................................................................... 43
Chapter 2
Initial Setup Wizard.............................................................................................................................47
2.1 Initial Setup Wizard Screens .......................................................................................................... 47
2.1.1 Internet Access Setup - WAN Interface ............................................................................. 47
2.1.2 Internet Access: Ethernet .................................................................................................... 48
2.1.3 Internet Access: PPPoE ......................................................................................................... 49
2.1.4 Internet Access: PPTP ........................................................................................................... 51
2.1.5 Internet Access: L2TP ............................................................................................................ 53
2.1.6 Internet Access Setup - Second WAN Interface ............................................................... 55
2.1.7 Internet Access: Congratulations ....................................................................................... 56
2.1.8 Date and Time Settings ........................................................................................................ 57
2.1.9 Register Device ..................................................................................................................... 57
2.1.10 Activate Service .................................................................................................................. 59
2.1.11 Service Settings .................................................................................................................... 60
2.1.12 Wireless Settings: AP Controller ......................................................................................... 61
2.1.13 Wireless Settings: SSID & Security ...................................................................................... 62
2.1.14 Remote Management ......................................................................................................62
ZyWALL ATP Series User’s Guide
6
Table of Contents
Chapter 3
Hardware, Interfaces and Zones......................................................................................................64
3.1 Hardware Overview ....................................................................................................................... 64
3.1.1 Front Panels ............................................................................................................................ 64
3.1.2 Rear Panels ............................................................................................................................ 65
3.2 Mounting ......................................................................................................................................... 66
3.2.1 Rack-mounting ...................................................................................................................... 67
3.2.2 Wall-mounting ....................................................................................................................... 67
3.3 Default Zones, Interfaces, and Ports ............................................................................................ 68
3.4 Stopping the Zyxel Device ............................................................................................................ 69
Chapter 4
Quick Setup Wizards..........................................................................................................................70
4.1 Quick Setup Overview ................................................................................................................... 70
4.2 WAN Interface Quick Setup .......................................................................................................... 71
4.2.1 Choose an Ethernet Interface .............................................................................................71
4.2.2 Select WAN Type ................................................................................................................... 72
4.2.3 Configure WAN IP Settings ................................................................................................... 72
4.2.4 ISP and WAN and ISP Connection Settings ........................................................................ 73
4.2.5 Quick Setup Interface Wizard: Summary ........................................................................... 76
4.3 VPN Setup Wizard ........................................................................................................................... 77
4.3.1 Welcome ................................................................................................................................ 77
4.3.2 VPN Setup Wizard: Wizard Type .......................................................................................... 78
4.3.3 VPN Express Wizard - Scenario ............................................................................................ 79
4.3.4 VPN Express Wizard - Configuration ................................................................................... 80
4.3.5 VPN Express Wizard - Summary ........................................................................................... 80
4.3.6 VPN Express Wizard - Finish .................................................................................................. 81
4.3.7 VPN Advanced Wizard - Scenario ..................................................................................... 82
4.3.8 VPN Advanced Wizard - Phase 1 Settings ........................................................................ 83
4.3.9 VPN Advanced Wizard - Phase 2 ....................................................................................... 85
4.3.10 VPN Advanced Wizard - Summary .................................................................................. 86
4.3.11 VPN Advanced Wizard - Finish ......................................................................................... 88
4.4 VPN Settings for Configuration Provisioning Wizard: Wizard Type ............................................. 89
4.4.1 Configuration Provisioning Express Wizard - VPN Settings ............................................... 89
4.4.2 Configuration Provisioning VPN Express Wizard - Configuration .................................... 90
4.4.3 VPN Settings for Configuration Provisioning Express Wizard - Summary ........................ 91
4.4.4 VPN Settings for Configuration Provisioning Express Wizard - Finish ................................ 92
4.4.5 VPN Settings for Configuration Provisioning Advanced Wizard - Scenario ................... 93
4.4.6 VPN Settings for Configuration Provisioning Advanced Wizard - Phase 1 Settings ...... 94
4.4.7 VPN Settings for Configuration Provisioning Advanced Wizard - Phase 2 .................... 96
4.4.8 VPN Settings for Configuration Provisioning Advanced Wizard - Summary .................. 96
4.4.9 VPN Settings for Configuration Provisioning Advanced Wizard- Finish .......................... 99
4.5 VPN Settings for L2TP VPN Settings Wizard ................................................................................... 99
ZyWALL ATP Series User’s Guide
7
Table of Contents
4.5.1 L2TP VPN Settings ................................................................................................................ 100
4.5.2 L2TP VPN Settings ................................................................................................................ 101
4.5.3 VPN Settings for L2TP VPN Setting Wizard - Summary .................................................... 101
4.5.4 VPN Settings for L2TP VPN Setting Wizard Completed ................................................... 103
Chapter 5
Dashboard........................................................................................................................................104
5.1 Overview ....................................................................................................................................... 104
5.1.1 What You Can Do in this Chapter ..................................................................................... 104
5.2 The General Screen ..................................................................................................................... 104
5.2.1 Device Information Screen ................................................................................................106
5.2.2 System Status Screen .......................................................................................................... 107
5.2.3 Tx/Rx Statistics ...................................................................................................................... 107
5.2.4 The Latest Logs Screen ....................................................................................................... 108
5.2.5 System Resources Screen ................................................................................................... 108
5.2.6 DHCP Table Screen ............................................................................................................. 109
5.2.7 Number of Login Users Screen ........................................................................................... 110
5.2.8 Current Login User ............................................................................................................... 111
5.2.9 VPN Status ............................................................................................................................ 111
5.2.10 SSL VPN Status .................................................................................................................... 111
5.3 The Advanced Threat Protection Screen .................................................................................. 112
Part II: Technical Reference.........................................................................113
Chapter 6
Monitor..............................................................................................................................................114
6.1 Overview ....................................................................................................................................... 114
6.1.1 What You Can Do in this Chapter ..................................................................................... 114
6.2 The Port Statistics Screen ............................................................................................................ 116
6.2.1 The Port Statistics Graph Screen ....................................................................................... 117
6.3 Interface Status Screen ................................................................................................................ 118
6.4 The Traffic Statistics Screen .......................................................................................................... 121
6.5 The Session Monitor Screen ........................................................................................................ 124
6.6 The Login Users Screen ................................................................................................................ 126
6.7 IGMP Statistics ............................................................................................................................... 127
6.8 The DDNS Status Screen ............................................................................................................... 128
6.9 IP/MAC Binding ............................................................................................................................. 128
6.10 Cellular Status Screen ................................................................................................................ 129
6.10.1 More Information .............................................................................................................. 132
6.11 The UPnP Port Status Screen ..................................................................................................... 133
6.12 USB Storage Screen .................................................................................................................... 134
ZyWALL ATP Series User’s Guide
8
Table of Contents
6.13 Ethernet Neighbor Screen ........................................................................................................ 135
6.14 FQDN Object Screen ................................................................................................................ 136
6.15 AP Information: AP List ............................................................................................................... 138
6.15.1 AP List: More Information ................................................................................................ 140
6.15.2 AP List: Config AP ............................................................................................................. 143
6.16 AP Information: Radio List .......................................................................................................... 145
6.16.1 Radio List: More Information ............................................................................................147
6.17 AP Information: Top N APs ........................................................................................................ 148
6.18 AP Information: Single AP .......................................................................................................... 150
6.19 ZyMesh ......................................................................................................................................... 151
6.20 SSID Info ....................................................................................................................................... 152
6.21 Station Info: Station List .............................................................................................................. 152
6.22 Station Info: Top N Stations ........................................................................................................ 153
6.23 Station Info: Single Station ......................................................................................................... 154
6.24 Detected Device ....................................................................................................................... 155
6.25 The IPSec Screen ........................................................................................................................ 156
6.26 The SSL Screen ............................................................................................................................. 158
6.27 The L2TP over IPSec Screen ....................................................................................................... 158
6.28 The Content Filter Screen .......................................................................................................... 159
6.29 The App Patrol Screen ............................................................................................................... 161
6.30 The Anti-Malware Screen .......................................................................................................... 162
6.31 The IDP Screen ............................................................................................................................ 164
6.32 The Email Security Screens ......................................................................................................... 166
6.32.1 Email Security Summary ................................................................................................... 166
6.32.2 The Email Security Status Screen ..................................................................................... 168
6.33 The Botnet Filter Screen .............................................................................................................. 170
6.34 The Sandboxing Screen ............................................................................................................. 171
6.35 The SSL Inspection Screens ........................................................................................................ 172
6.35.1 Certificate Cache List ....................................................................................................... 173
6.36 Log Screens ................................................................................................................................. 174
6.36.1 View Log ............................................................................................................................ 174
6.36.2 View AP Log ....................................................................................................................... 176
Chapter 7
Licensing...........................................................................................................................................179
7.1 Registration Overview .................................................................................................................. 179
7.1.1 What you Need to Know ....................................................................................................179
7.1.2 Registration Screen ............................................................................................................. 180
7.1.3 Service Screen ..................................................................................................................... 180
7.2 Signature Update ......................................................................................................................... 182
7.2.1 What you Need to Know ....................................................................................................182
7.2.2 The Signature Screen .......................................................................................................... 182
7.2.3 Auto Update ........................................................................................................................ 183
ZyWALL ATP Series User’s Guide
9
Table of Contents
Chapter 8
Wireless.............................................................................................................................................184
8.1 Overview ....................................................................................................................................... 184
8.1.1 What You Can Do in this Chapter ..................................................................................... 184
8.2 Controller Screen ......................................................................................................................... 184
8.3 AP Management Screens ........................................................................................................... 185
8.3.1 Mgnt. AP List ....................................................................................................................... 185
8.3.2 AP Policy .............................................................................................................................. 189
8.3.3 AP Group ............................................................................................................................. 190
8.3.4 Firmware ............................................................................................................................... 196
8.4 MON Mode ................................................................................................................................... 197
8.4.1 Add/Edit Rogue/Friendly List .............................................................................................. 199
8.5 Auto Healing ................................................................................................................................. 200
8.6 RTLS Overview ............................................................................................................................... 200
8.6.1 What You Can Do in this Chapter ..................................................................................... 201
8.6.2 Before You Begin ................................................................................................................. 201
8.6.3 Configuring RTLS .................................................................................................................. 202
8.7 Technical Reference .................................................................................................................... 203
8.7.1 Dynamic Channel Selection .............................................................................................. 203
8.7.2 Load Balancing ................................................................................................................... 204
Chapter 9
Interfaces..........................................................................................................................................205
9.1 Interface Overview ...................................................................................................................... 205
9.1.1 What You Can Do in this Chapter ..................................................................................... 205
9.1.2 What You Need to Know ................................................................................................... 205
9.1.3 What You Need to Do First ................................................................................................. 210
9.2 Port Role ......................................................................................................................................... 210
9.3 Ethernet Summary Screen ........................................................................................................... 211
9.3.1 Ethernet Edit ........................................................................................................................ 213
9.3.2 Proxy ARP ............................................................................................................................. 228
9.3.3 Virtual Interfaces ................................................................................................................ 229
9.3.4 References ........................................................................................................................... 230
9.3.5 Add/Edit DHCPv6 Request/Release Options ................................................................... 231
9.3.6 Add/Edit DHCP Extended Options ................................................................................... 232
9.4 PPP Interfaces ............................................................................................................................... 233
9.4.1 PPP Interface Summary ...................................................................................................... 234
9.4.2 PPP Interface Add or Edit .................................................................................................. 235
9.5 Cellular Configuration Screen ..................................................................................................... 240
9.5.1 Cellular Choose Slot ........................................................................................................... 243
9.5.2 Add / Edit Cellular Configuration ...................................................................................... 243
9.6 Tunnel Interfaces .......................................................................................................................... 249
9.6.1 Configuring a Tunnel .......................................................................................................... 251
ZyWALL ATP Series User’s Guide
10
Table of Contents
9.6.2 Tunnel Add or Edit Screen .................................................................................................. 252
9.7 VLAN Interfaces ........................................................................................................................... 256
9.7.1 VLAN Summary Screen ....................................................................................................... 257
9.7.2 VLAN Add/Edit ................................................................................................................... 258
9.8 Bridge Interfaces .......................................................................................................................... 269
9.8.1 Bridge Summary .................................................................................................................. 271
9.8.2 Bridge Add/Edit .................................................................................................................. 272
9.9 VTI ................................................................................................................................................... 282
9.9.1 Restrictions for IPSec Virtual Tunnel Interface .................................................................. 283
9.9.2 VTI Screen ............................................................................................................................ 283
9.9.3 VTI Add/Edit ......................................................................................................................... 284
9.10 Trunk Overview ........................................................................................................................... 287
9.10.1 What You Need to Know ................................................................................................. 287
9.11 The Trunk Summary Screen ........................................................................................................ 290
9.11.1 Configuring a User-Defined Trunk ................................................................................... 291
9.11.2 Configuring the System Default Trunk ............................................................................ 293
9.12 Interface Technical Reference ................................................................................................. 295
Chapter 10
Routing..............................................................................................................................................299
10.1 Policy and Static Routes Overview ........................................................................................... 299
10.1.1 What You Can Do in this Chapter ................................................................................... 299
10.1.2 What You Need to Know ................................................................................................ 300
10.2 Policy Route Screen ................................................................................................................... 301
10.2.1 Policy Route Edit Screen .................................................................................................. 303
10.3 IP Static Route Screen ................................................................................................................ 308
10.3.1 Static Route Add/Edit Screen .......................................................................................... 308
10.4 Policy Routing Technical Reference ........................................................................................310
10.5 Routing Protocols Overview ..................................................................................................... 310
10.5.1 What You Need to Know ................................................................................................. 311
10.6 The RIP Screen ............................................................................................................................. 311
10.7 The OSPF Screen ......................................................................................................................... 313
10.7.1 Configuring the OSPF Screen .......................................................................................... 316
10.7.2 OSPF Area Add/Edit Screen ........................................................................................... 317
10.7.3 Virtual Link Add/Edit Screen ...........................................................................................319
10.8 BGP (Border Gateway Protocol) .............................................................................................. 320
10.8.1 Allow BGP Packets to Enter the Zyxel Device ................................................................ 321
10.8.2 Configuring the BGP Screen ............................................................................................ 321
10.8.3 The BGP Neighbors Screen .............................................................................................. 323
10.8.4 Example Scenario ............................................................................................................. 324
Chapter 11
DDNS ................................................................................................................................................326
ZyWALL ATP Series User’s Guide
11
Table of Contents
11.1 DDNS Overview ........................................................................................................................... 326
11.1.1 What You Can Do in this Chapter ................................................................................... 326
11.1.2 What You Need to Know ................................................................................................. 326
11.2 The DDNS Screen ........................................................................................................................ 327
11.2.1 The Dynamic DNS Add/Edit Screen ................................................................................ 328
Chapter 12
NAT....................................................................................................................................................332
12.1 NAT Overview ............................................................................................................................. 332
12.1.1 What You Can Do in this Chapter ................................................................................... 332
12.1.2 What You Need to Know ................................................................................................. 332
12.2 The NAT Screen ........................................................................................................................... 333
12.2.1 The NAT Add/Edit Screen .................................................................................................335
12.3 NAT Technical Reference .......................................................................................................... 338
Chapter 13
Redirect Service...............................................................................................................................340
13.1 Overview ..................................................................................................................................... 340
13.1.1 HTTP Redirect ..................................................................................................................... 340
13.1.2 SMTP Redirect .................................................................................................................... 340
13.1.3 What You Can Do in this Chapter ................................................................................... 341
13.1.4 What You Need to Know ................................................................................................. 341
13.2 The Redirect Service Screen ..................................................................................................... 343
13.2.1 The Redirect Service Edit Screen ..................................................................................... 344
Chapter 14
ALG....................................................................................................................................................346
14.1 ALG Overview ............................................................................................................................. 346
14.1.1 What You Need to Know ................................................................................................. 346
14.1.2 Before You Begin ............................................................................................................... 349
14.2 The ALG Screen .......................................................................................................................... 349
14.3 ALG Technical Reference ......................................................................................................... 351
Chapter 15
UPnP...................................................................................................................................................353
15.1 UPnP and NAT-PMP Overview ................................................................................................... 353
15.2 What You Need to Know ........................................................................................................... 353
15.2.1 NAT Traversal ..................................................................................................................... 353
15.2.2 Cautions with UPnP and NAT-PMP .................................................................................. 354
15.3 UPnP Screen ................................................................................................................................ 354
15.4 Technical Reference .................................................................................................................. 355
15.4.1 Turning on UPnP in Windows 7 Example ......................................................................... 355
15.4.2 Using UPnP in Windows XP Example ................................................................................ 357
ZyWALL ATP Series User’s Guide
12
Table of Contents
15.4.3 Web Configurator Easy Access ....................................................................................... 359
Chapter 16
IP/MAC Binding................................................................................................................................362
16.1 IP/MAC Binding Overview ......................................................................................................... 362
16.1.1 What You Can Do in this Chapter ................................................................................... 362
16.1.2 What You Need to Know ................................................................................................. 362
16.2 IP/MAC Binding Summary ......................................................................................................... 363
16.2.1 IP/MAC Binding Edit .......................................................................................................... 364
16.2.2 Static DHCP Edit ................................................................................................................ 365
16.3 IP/MAC Binding Exempt List ....................................................................................................... 366
Chapter 17
Layer 2 Isolation...............................................................................................................................367
17.1 Overview ..................................................................................................................................... 367
17.1.1 What You Can Do in this Chapter ................................................................................... 367
17.2 Layer-2 Isolation General Screen ............................................................................................. 367
17.3 White List Screen ......................................................................................................................... 368
17.3.1 Add/Edit White List Rule ................................................................................................... 369
Chapter 18
DNS Inbound LB................................................................................................................................371
18.1 DNS Inbound Load Balancing Overview ................................................................................. 371
18.1.1 What You Can Do in this Chapter ................................................................................... 371
18.2 The DNS Inbound LB Screen ...................................................................................................... 372
18.2.1 The DNS Inbound LB Add/Edit Screen ............................................................................ 373
18.2.2 The DNS Inbound LB Add/Edit Member Screen ............................................................ 375
Chapter 19
IPnP....................................................................................................................................................377
19.1 IPnP Overview ............................................................................................................................ 377
19.1.1 What You Can Do in this Chapter ................................................................................... 377
19.2 IPnP Screen .................................................................................................................................. 378
Chapter 20
IPSec VPN .........................................................................................................................................379
20.1 Virtual Private Networks (VPN) Overview ................................................................................. 379
20.1.1 What You Can Do in this Chapter ................................................................................... 381
20.1.2 What You Need to Know ................................................................................................. 381
20.1.3 Before You Begin ............................................................................................................... 384
20.2 The VPN Connection Screen ..................................................................................................... 384
20.2.1 The VPN Connection Add/Edit Screen .......................................................................... 386
20.3 The VPN Gateway Screen ......................................................................................................... 393
ZyWALL ATP Series User’s Guide
13
Table of Contents
20.3.1 The VPN Gateway Add/Edit Screen ............................................................................... 394
20.4 VPN Concentrator ..................................................................................................................... 401
20.4.1 VPN Concentrator Requirements and Suggestions ...................................................... 401
20.4.2 VPN Concentrator Screen ............................................................................................... 402
20.4.3 The VPN Concentrator Add/Edit Screen ........................................................................ 402
20.5 Zyxel Device IPSec VPN Client Configuration Provisioning .................................................... 403
20.6 IPSec VPN Background Information ......................................................................................... 405
Chapter 21
SSL VPN..............................................................................................................................................415
21.1 Overview ..................................................................................................................................... 415
21.1.1 What You Can Do in this Chapter ................................................................................... 415
21.1.2 What You Need to Know ................................................................................................. 415
21.2 The SSL Access Privilege Screen ................................................................................................ 416
21.2.1 The SSL Access Privilege Policy Add/Edit Screen ......................................................... 417
21.3 The SSL Global Setting Screen ................................................................................................... 419
Chapter 22
L2TP VPN..................................... ... .... ............................................ ....................................................421
22.1 Overview ..................................................................................................................................... 421
22.1.1 What You Can Do in this Chapter ................................................................................... 421
22.1.2 What You Need to Know ................................................................................................. 421
22.2 L2TP VPN Screen ......................................................................................................................... 422
22.2.1 Example: L2TP and Zyxel Device Behind a NAT Router ................................................ 424
Chapter 23
BWM (Bandwidth Management) .................................................................................................426
23.1 Overview ..................................................................................................................................... 426
23.1.1 What You Can Do in this Chapter ................................................................................... 426
23.1.2 What You Need to Know ................................................................................................ 426
23.2 The Bandwidth Management Configuration .......................................................................... 430
23.2.1 The Bandwidth Management Add/Edit Screen ............................................................ 433
Chapter 24
Web Authentication ........................................................................................................................441
24.1 Web Auth Overview ................................................................................................................... 441
24.1.1 What You Can Do in this Chapter ................................................................................... 441
24.1.2 What You Need to Know ................................................................................................. 442
24.2 Web Authentication General Screen ...................................................................................... 442
24.2.1 User-aware Access Control Example ............................................................................. 447
24.2.2 Authentication Type Screen ............................................................................................ 453
24.2.3 Custom Web Portal / User Agreement File Screen ....................................................... 457
24.3 SSO Overview .............................................................................................................................. 458
ZyWALL ATP Series User’s Guide
14
Table of Contents
24.4 SSO - Zyxel Device Configuration ............................................................................................. 460
24.4.1 Configuration Overview ................................................................................................... 460
24.4.2 Configure the Zyxel Device to Communicate with SSO .............................................. 460
24.4.3 Enable Web Authentication ............................................................................................ 461
24.4.4 Create a Security Policy ................................................................................................... 463
24.4.5 Configure User Information ..............................................................................................464
24.4.6 Configure an Authentication Method ........................................................................... 465
24.4.7 Configure Active Directory ..............................................................................................466
24.5 SSO Agent Configuration .......................................................................................................... 467
Chapter 25
Security Policy..................................................................................................................................470
25.1 Overview ..................................................................................................................................... 470
25.2 One Security ................................................................................................................................ 471
25.3 What You Can Do in this Chapter ............................................................................................ 474
25.3.1 What You Need to Know ................................................................................................. 474
25.4 The Security Policy Screen ......................................................................................................... 476
25.4.1 Configuring the Security Policy Control Screen ............................................................ 477
25.4.2 The Security Policy Control Add/Edit Screen ................................................................. 481
25.5 Anomaly Detection and Prevention Overview ...................................................................... 482
25.5.1 The Anomaly Detection and Prevention General Screen ........................................... 483
25.5.2 Creating New ADP Profiles ..............................................................................................484
25.5.3 Traffic Anomaly Profiles ................................................................................................... 485
25.5.4 Protocol Anomaly Profiles ................................................................................................ 488
25.6 The Session Control Screen ........................................................................................................ 491
25.6.1 The Session Control Add/Edit Screen .............................................................................. 492
25.7 Security Policy Example Applications ......................................................................................493
Chapter 26
Application Patrol............................................................................................................................496
26.1 Overview ..................................................................................................................................... 496
26.1.1 What You Can Do in this Chapter ................................................................................... 496
26.1.2 What You Need to Know ................................................................................................ 496
26.2 Application Patrol Profile ........................................................................................................... 497
26.2.1 Apply to a Security Policy ................................................................................................ 499
26.2.2 The Application Patrol Profile Add/Edit Screen - My Application ............................... 501
26.2.3 The Application Patrol Profile Add/Edit Screen - Query Result .................................... 503
Chapter 27
Content Filter ....................................................................................................................................505
27.1 Overview ..................................................................................................................................... 505
27.1.1 What You Can Do in this Chapter ................................................................................... 505
27.1.2 What You Need to Know ................................................................................................. 505
ZyWALL ATP Series User’s Guide
15
Table of Contents
27.1.3 Before You Begin ............................................................................................................... 507
27.2 Content Filter Profile Screen ...................................................................................................... 507
27.2.1 Apply to a Security Policy ................................................................................................ 508
27.2.2 Content Filter Add Profile Category Service .................................................................. 511
27.2.3 Content Filter Add Filter Profile Custom Service ........................................................... 517
27.3 Content Filter Trusted Web Sites Screen ................................................................................. 520
27.4 Content Filter Forbidden Web Sites Screen ............................................................................ 521
27.5 Content Filter Technical Reference ......................................................................................... 522
Chapter 28
Anti-Malware....................................................................................................................................524
28.1 Overview ..................................................................................................................................... 524
28.1.1 What You Can Do in this Chapter ................................................................................... 524
28.1.2 What You Need to Know ................................................................................................. 525
28.2 Anti-Malware Screen ................................................................................................................. 526
28.2.1 Anti-Malware Black List or White List Add/Edit ............................................................... 529
28.3 Anti-Malware Signature Searching ........................................................................................... 530
28.4 Anti-Malware Technical Reference ......................................................................................... 531
Chapter 29
Botnet Filter.......................................................................................................................................533
29.1 Overview ..................................................................................................................................... 533
29.1.1 What You Can Do in this Chapter ................................................................................... 533
29.2 Botnet Filter Screen ..................................................................................................................... 533
Chapter 30
IDP .....................................................................................................................................................537
30.1 Overview ..................................................................................................................................... 537
30.1.1 What You Can Do in this Chapter ................................................................................... 537
30.1.2 What You Need To Know ................................................................................................. 537
30.1.3 Before You Begin ............................................................................................................... 537
30.2 The IDP Screen ............................................................................................................................ 537
30.2.1 Query Example .................................................................................................................. 542
30.3 IDP Custom Signatures .............................................................................................................. 543
30.3.1 Add / Edit Custom Signatures ......................................................................................... 544
30.3.2 Custom Signature Example ............................................................................................. 548
30.3.3 Applying Custom Signatures ............................................................................................ 550
30.3.4 Verifying Custom Signatures ............................................................................................ 551
30.4 IDP Technical Reference ........................................................................................................... 551
Chapter 31
Sandboxing ......................................................................................................................................554
31.1 Overview ..................................................................................................................................... 554
ZyWALL ATP Series User’s Guide
16
Table of Contents
31.1.1 What You Can Do in this Chapter ................................................................................... 554
31.2 Sandboxing Screen .................................................................................................................... 554
Chapter 32
Email Security...................................................................................................................................556
32.1 Overview ..................................................................................................................................... 556
32.1.1 What You Can Do in this Chapter ................................................................................... 556
32.1.2 What You Need to Know ................................................................................................. 556
32.2 Before You Begin ........................................................................................................................ 557
32.3 The Email Security Screen .......................................................................................................... 558
32.4 The Black List / White List Screen ............................................................................................... 561
32.4.1 The Black or White List Add/Edit Screen ......................................................................... 562
32.4.2 Regular Expressions in Black or White List Entries ........................................................... 563
32.5 Email Security Technical Reference ......................................................................................... 563
Chapter 33
SSL Inspection...................................................................................................................................567
33.1 Overview ..................................................................................................................................... 567
33.1.1 What You Can Do in this Chapter ................................................................................... 567
33.1.2 What You Need To Know ................................................................................................. 567
33.1.3 Before You Begin ............................................................................................................... 568
33.2 The SSL Inspection Profile Screen .............................................................................................. 568
33.2.1 Apply to a Security Policy ................................................................................................ 569
33.2.2 Add / Edit SSL Inspection Profiles .................................................................................... 572
33.3 Exclude List Screen .................................................................................................................... 573
33.4 Certificate Update Screen ....................................................................................................... 575
33.5 Install a CA Certificate in a Browser ......................................................................................... 576
Chapter 34
Object...............................................................................................................................................579
34.1 Zones Overview .......................................................................................................................... 579
34.1.1 What You Need to Know ................................................................................................. 579
34.1.2 The Zone Screen ................................................................................................................ 580
34.2 User/Group Overview ................................................................................................................ 582
34.2.1 What You Need To Know ................................................................................................. 582
34.2.2 User/Group User Summary Screen .................................................................................. 584
34.2.3 User/Group Group Summary Screen .............................................................................. 587
34.2.4 User/Group Setting Screen ............................................................................................. 589
34.2.5 User/Group MAC Address Summary Screen ................................................................ 594
34.2.6 User /Group Technical Reference .................................................................................. 596
34.3 AP Profile Overview .................................................................................................................... 596
34.3.1 Radio Screen ..................................................................................................................... 597
34.3.2 SSID Screen ....................................................................................................................... 603
ZyWALL ATP Series User’s Guide
17
Table of Contents
34.4 MON Profile ................................................................................................................................ 612
34.4.1 Overview ............................................................................................................................ 612
34.4.2 Configuring MON Profile ................................................................................................. 613
34.4.3 Add/Edit MON Profile ....................................................................................................... 614
34.4.4 Technical Reference ........................................................................................................ 615
34.5 ZyMesh Overview ....................................................................................................................... 616
34.5.1 ZyMesh Profile .................................................................................................................... 618
34.5.2 Add/Edit ZyMesh Profile ................................................................................................... 619
34.6 Address/Geo IP Overview ......................................................................................................... 619
34.6.1 What You Need To Know ................................................................................................. 620
34.6.2 Address Summary Screen ................................................................................................ 620
34.6.3 Address Group Summary Screen .................................................................................... 624
34.6.4 Geo IP Summary Screen .................................................................................................. 626
34.7 Service Overview ........................................................................................................................ 628
34.7.1 What You Need to Know ................................................................................................. 628
34.7.2 The Service Summary Screen .......................................................................................... 629
34.7.3 The Service Group Summary Screen ............................................................................. 631
34.8 Schedule Overview ................................................................................................................... 632
34.8.1 What You Need to Know ................................................................................................. 633
34.8.2 The Schedule Screen ........................................................................................................ 633
34.8.3 The Schedule Group Screen ............................................................................................ 636
34.9 AAA Server Overview ............................................................................................................... 638
34.9.1 Directory Service (AD/LDAP) ........................................................................................... 638
34.9.2 RADIUS Server .................................................................................................................... 638
34.9.3 ASAS .................................................................................................................................... 639
34.9.4 What You Need To Know ................................................................................................. 639
34.9.5 Active Directory or LDAP Server Summary ..................................................................... 641
34.9.6 RADIUS Server Summary ...................................................................................................644
34.10 Auth. Method Overview ........................................................................................................ 647
34.10.1 Before You Begin ............................................................................................................. 647
34.10.2 Example: Selecting a VPN Authentication Method ................................................... 647
34.10.3 Authentication Method Objects ................................................................................... 648
34.10.4 Two-Factor Authentication ............................................................................................ 650
34.11 Certificate Overview ............................................................................................................... 653
34.11.1 What You Need to Know ............................................................................................... 653
34.11.2 Verifying a Certificate .................................................................................................... 655
34.11.3 The My Certificates Screen ............................................................................................ 656
34.11.4 The Trusted Certificates Screen .................................................................................... 663
34.11.5 Certificates Technical Reference ................................................................................. 668
34.12 ISP Account Overview ............................................................................................................ 668
34.12.1 ISP Account Summary ....................................................................................................668
34.13 DHCPv6 Overview .................................................................................................................... 671
34.13.1 The DHCPv6 Request Screen ......................................................................................... 671
ZyWALL ATP Series User’s Guide
18
Table of Contents
34.13.2 The DHCPv6 Lease Screen ............................................................................................. 673
Chapter 35
Device HA.........................................................................................................................................675
35.1 Device HA Overview .................................................................................................................. 675
35.1.1 What You Can Do in These Screens ................................................................................ 675
35.2 Device HA Status ........................................................................................................................ 675
35.3 Device HA Pro ............................................................................................................................. 677
35.3.1 Deploying Device HA Pro ................................................................................................ 678
35.3.2 Configuring Device HA Pro .............................................................................................. 678
35.4 View Log ...................................................................................................................................... 680
Chapter 36
Cloud CNM......................................................................................................................................682
36.1 Cloud CNM Overview ................................................................................................................ 682
36.1.1 What You Can Do in this Chapter ................................................................................... 682
36.2 Cloud CNM SecuManager ....................................................................................................... 682
36.3 Cloud CNM SecuReporter ......................................................................................................... 685
Chapter 37
System...............................................................................................................................................689
37.1 Overview ..................................................................................................................................... 689
37.1.1 What You Can Do in this Chapter ................................................................................... 689
37.2 Host Name ................................................................................................................................... 690
37.3 USB Storage ................................................................................................................................. 690
37.4 Date and Time ............................................................................................................................ 691
37.4.1 Pre-defined NTP Time Servers List ..................................................................................... 694
37.4.2 Time Server Synchronization ............................................................................................ 694
37.5 Console Port Speed ................................................................................................................... 695
37.6 DNS Overview ............................................................................................................................. 696
37.6.1 DNS Server Address Assignment ...................................................................................... 696
37.6.2 Configuring the DNS Screen ............................................................................................ 696
37.6.3 (IPv6) Address Record ...................................................................................................... 700
37.6.4 PTR Record ......................................................................................................................... 700
37.6.5 Adding an (IPv6) Address/PTR Record .......................................................................... 700
37.6.6 CNAME Record ................................................................................................................. 701
37.6.7 Adding a CNAME Record ................................................................................................ 701
37.6.8 Domain Zone Forwarder ................................................................................................. 702
37.6.9 Adding a Domain Zone Forwarder ................................................................................. 702
37.6.10 MX Record ...................................................................................................................... 703
37.6.11 Adding a MX Record ...................................................................................................... 703
37.6.12 Security Option Control .................................................................................................. 704
37.6.13 Editing a Security Option Control .................................................................................. 704
ZyWALL ATP Series User’s Guide
19
Table of Contents
37.6.14 Adding a DNS Service Control Rule .............................................................................. 705
37.7 WWW Overview .......................................................................................................................... 706
37.7.1 Service Access Limitations ............................................................................................... 706
37.7.2 System Timeout .................................................................................................................. 706
37.7.3 HTTPS ................................................................................................................................... 706
37.7.4 Configuring WWW Service Control ................................................................................. 707
37.7.5 Service Control Rules ........................................................................................................ 710
37.7.6 Customizing the WWW Login Page ................................................................................ 711
37.7.7 HTTPS Example ................................................................................................................... 716
37.8 SSH ............................................................................................................................................. 723
37.8.1 How SSH Works .................................................................................................................. 724
37.8.2 SSH Implementation on the Zyxel Device ...................................................................... 725
37.8.3 Requirements for Using SSH ..............................................................................................725
37.8.4 Configuring SSH ................................................................................................................. 725
37.8.5 Service Control Rules ........................................................................................................ 726
37.8.6 Secure Telnet Using SSH Examples .................................................................................. 727
37.9 Telnet ........................................................................................................................................... 728
37.9.1 Configuring Telnet ............................................................................................................. 728
37.9.2 Service Control Rules ........................................................................................................ 730
37.10 FTP .............................................................................................................................................. 730
37.10.1 Configuring FTP ................................................................................................................ 730
37.10.2 Service Control Rules ...................................................................................................... 732
37.11 SNMP ......................................................................................................................................... 732
37.11.1 SNMPv3 and Security ...................................................................................................... 733
37.11.2 Supported MIBs ............................................................................................................... 734
37.11.3 SNMP Traps ....................................................................................................................... 734
37.11.4 Configuring SNMP ........................................................................................................... 734
37.11.5 Add SNMPv3 User ............................................................................................................ 737
37.11.6 Service Control Rules ...................................................................................................... 737
37.12 Authentication Server .............................................................................................................. 738
37.12.1 Add/Edit Trusted RADIUS Client .................................................................................... 740
37.13 Notification > Mail Server ......................................................................................................... 740
37.14 Notification > SMS ..................................................................................................................... 742
37.15 Language Screen ..................................................................................................................... 743
37.16 IPv6 Screen ................................................................................................................................ 743
37.17 Zyxel One Network (ZON) Utility ............................................................................................. 744
37.17.1 Requirements ................................................................................................................... 744
37.17.2 Run the ZON Utility ........................................................................................................... 745
37.17.3 Zyxel One Network (ZON) System Screen .................................................................... 748
Chapter 38
Log and Report....... .... ... ............................................. ... ............................................. ......................749
38.1 Overview ..................................................................................................................................... 749
ZyWALL ATP Series User’s Guide
20
Table of Contents
38.1.1 What You Can Do In this Chapter .................................................................................. 749
38.2 Email Daily Report ....................................................................................................................... 749
38.3 Log Setting Screens ................................................................................................................... 751
38.3.1 Log Setting Summary ........................................................................................................ 751
38.3.2 Edit System Log Settings .................................................................................................. 752
38.3.3 Edit Log on USB Storage Setting ..................................................................................... 756
38.3.4 Edit Remote Server Log Settings ..................................................................................... 757
38.3.5 Log Category Settings Screen ......................................................................................... 759
Chapter 39
File Manager ....................................................................................................................................762
39.1 Overview ..................................................................................................................................... 762
39.1.1 What You Can Do in this Chapter ................................................................................... 762
39.1.2 What you Need to Know .................................................................................................. 762
39.2 The Configuration File Screen ................................................................................................... 764
39.3 Firmware Management ........................................................................................................... 769
39.3.1 Cloud Helper ..................................................................................................................... 769
39.3.2 The Firmware Management Screen ............................................................................... 771
39.3.3 Firmware Upgrade via USB Stick ...................................................................................... 774
39.4 The Shell Script Screen .............................................................................................................. 774
Chapter 40
Diagnostics ......................................................................................................................................777
40.1 Overview ..................................................................................................................................... 777
40.1.1 What You Can Do in this Chapter ................................................................................... 777
40.2 The Diagnostics Screens ............................................................................................................ 777
40.2.1 The Diagnostics Collect Screen ....................................................................................... 778
40.2.2 The Diagnostics Collect on AP Screen ........................................................................... 779
40.2.3 The Diagnostics Files Screen ............................................................................................780
40.3 The Packet Capture Screen ...................................................................................................... 781
40.3.1 The Packet Capture Files Screen .................................................................................... 783
40.4 The CPU / Memory Status Screen ............................................................................................. 784
40.5 The System Log Screen .............................................................................................................. 786
40.6 The Remote Assistance Screen ................................................................................................. 786
40.7 The Network Tool Screen ........................................................................................................... 788
40.8 The Routing Traces Screen ........................................................................................................ 790
40.9 The Wireless Frame Capture Screen ........................................................................................791
40.9.1 The Wireless Frame Capture Files Screen ...................................................................... 793
Chapter 41
Packet Flow Explore .......................................................................................................................794
41.1 Overview ..................................................................................................................................... 794
41.1.1 What You Can Do in this Chapter ................................................................................... 794
ZyWALL ATP Series User’s Guide
21
Table of Contents
41.2 The Routing Status Screen ......................................................................................................... 794
41.3 The SNAT Status Screen .............................................................................................................. 798
Chapter 42
Shutdown..........................................................................................................................................801
42.1 Overview ..................................................................................................................................... 801
42.1.1 What You Need To Know ................................................................................................. 801
42.2 The Shutdown Screen ................................................................................................................ 801
Chapter 43
Troubleshooting................................................................................................................................802
43.1 Resetting the Zyxel Device ........................................................................................................ 814
43.2 Getting More Troubleshooting Help .........................................................................................814
Appendix A Customer Support ..................................................................................................... 815
Appendix B Product Features........................................................................................................ 821
Appendix C Legal Information ...................................................................................................... 825
Index.................................................................................................................................................833
ZyWALL ATP Series User’s Guide
22
PART I
User’s Guide
23
1.1 Overview
Zyxel Device refers to these models as outlined below.
• ATP200
• ATP500
• ATP800
Most screen shots in this guide come from the ATP200.
The following table describes the port features of the Zyxel Device by model.
Table 1 ATP Series Comparison Table
ATP MODELS ATP200 ATP500 ATP800
USB 3.0 Ports 2 2 2
1 Gbps SFP interface 1 1 2
10/100/1000 Mbps Ethernet WAN Ports 2 - -
10/100/1000 Mbps Ethernet Ports 4 7 12
Console Port 1 1 1
CHAPTER 1
Introduction
• ATP500 and ATP800 support Device HA Pro.
• Some interface names vary by model - see Table 13 on page 69 and Table 14 on page 69 for default
port / interface name mapping. See Table 15 on page 69 for default interface / zone mapping.
See the product’s datasheet for detailed information on a specific model.
1.2 Registration at myZyxel
myZyxel is Zyxel’s online services center where you can register your Zyxel Device and manage
subscription services available for your Zyxel Device (see Configuration > Licensing > Registration >
Service for services available for your Zyxel Device).
• For Zyxel Devices that already have firmware version 4.25 or later, you have to register your Zyxel
Device and activate the corresponding service at myZyxel (through your Zyxel Device).
• For Zyxel Devices upgrading to firmware version 4.25 or later, you may skip registering your Zyxel
Device and activating the corresponding service at myZyxel (through your Zyxel Device). However, it
is highly recommended to at least register your Zyxel Device. At the time of writing, the Firmware
Upgrade license providing Cloud Helper new firmware notifications, is free when you register your
Zyxel Device.
ZyWALL ATP Series User’s Guide
24
Chapter 1 Introduction
Note: You need to create a myZyxel account at http://portal.myZyxel.com before you can
register your device and activate the services at myZyxel.
You may need your Zyxel Device’s serial number and LAN MAC address to register it at
myZyxel. See the label at the back of the Zyxel Device’s for details.
Figure 1 myZyxel Login
1.2.1 Grace Period
SecuReporter and service licenses have a 15-day grace period after a license expires. Services will
continue to work in this period during which you will receive notifications to renew your license(s). New
license(s) are valid for 1 year from the date of purchase.
1.2.2 Applications
These are some Zyxel Device application scenarios.
Security Router
Security includes a Stateful Packet Inspection (SPI) firewall.
ZyWALL ATP Series User’s Guide
25
Chapter 1 Introduction
Figure 2 Applications: Security Router Applications: Security Router
IPv6 Routing
The Zyxel Device supports IPv6 Ethernet, PPP, VLAN, and bridge routing. You may also create IPv6 policy
routes and IPv6 objects. The Zyxel Device can also route IPv6 packets through IPv4 networks using
different tunneling methods.
Figure 3 Applications: IPv6 Routing
VPN Connectivity
Set up VPN tunnels with other companies, branch offices, telecommuters, and business travelers to
provide secure access to your network. AS is an Authentication Server in the below figure.
ZyWALL ATP Series User’s Guide
26
Chapter 1 Introduction
Web Mail File Share
Web-based Application
https://
Application Server
Non-Web
LAN (192.168.1.X)
Figure 4 Applications: VPN Connectivity
SSL VPN Network Access
SSL VPN lets remote users use their web browsers for a very easy-to-use VPN solution. A user just browses
to the Zyxel Device’s web address and enters his user name and password to securely connect to the
Zyxel Device’s network. Here full tunnel mode creates a virtual connection for a remote user and gives
him a private IP address in the same subnet as the local network so he can access network resources in
the same way as if he were part of the internal network.
Figure 5 SSL VPN With Full Tunnel Mode
User-Aware Access Control
Set up security policies to restrict access to sensitive information and shared resources based on the user
who is trying to access it. In the following figure user A can access both the Internet and an internal file
server. User B has a lower level of access and can only access the Internet. User C is not even logged in,
so and cannot access either the Internet or the file server.
Figure 6 Applications: User-Aware Access Control
ZyWALL ATP Series User’s Guide
27
Chapter 1 Introduction
Load Balancing
Set up multiple connections to the Internet on the same port, or different ports, including cellular
interfaces. In either case, you can balance the traffic loads between them.
Figure 7 Applications: Multiple WAN Interfaces
1.3 Management Overview
You can manage the Zyxel Device in the following ways.
Web Configurator
The Web Configurator allows easy Zyxel Device setup and management using an Internet browser. This
User’s Guide provides information about the Web Configurator.
Figure 8 Managing the Zyxel Device: Web Configurator
ZyWALL ATP Series User’s Guide
28
Chapter 1 Introduction
Command-Line Interface (CLI)
The CLI allows you to use text-based commands to configure the Zyxel Device. Access it using remote
management (for example, SSH or Telnet) or via the physical or Web Configurator console port. See the
Command Reference Guide for CLI details. The default settings for the console port are:
Table 2 Console Port Default Settings
SETTING VALUE
Speed 115200 bps
Data Bits 8
Parity None
Stop Bit 1
Flow Control Off
FTP
Use File Transfer Protocol for firmware upgrades and configuration backup/restore.
SNMP
The device can be monitored and/or managed by an SNMP manager. See Section 37.11 on page 732 .
CloudCNM
Use the CloudCNM screen (see Section 37.15 on page 743 ) to enable and configure management of
the Zyxel Device by a Central Network Management system.
Management Authentication
Managers must be authenticated with a username and password, using one of:
•Local Zyxel Device authentication
• An external RADIUS server
• An external LDAP server
• Certificates
1.4 Web Configurator
In order to use the Web Configurator, you must:
• Use one of the following web browser versions or later:
• Internet Explorer 10.x, 11.x
• Chrome latest version (45 or above)
• Firefox latest version (45 or above)
• Safari latest version (9.0 or above)
• Allow pop-up windows (blocked by default in some browsers)
ZyWALL ATP Series User’s Guide
29
Chapter 1 Introduction
• Enable JavaScripts, Java permissions, and cookies
The recommended screen resolution is 1024 x 768 pixels.
Note: Screenshots and graphics in this book may differ slightly from your product due to
differences in product features or web configurator brand style. Most screen shots in this
guide come from the USG110 and USG60W.
1.4.1 Web Configurator Access
1 Make sure your Zyxel Device hardware is properly connected. See the Quick Start Guide.
2 In your browser go to http://192.168.1.1 . By default, the Zyxel Device automatically routes this request to
its HTTPS server, and it is recommended to keep this setting. The Login screen appears.
3 Type the user name (default: “admin”) and password (default: “1234”).
4 Click Login. After you log in for the first time using the default user name and password, you must
change the default admin password in the Update Admin Info screen. Enter a new password of from 1
to 64 characters.
In Configuration > Object > User/Group > Setting , you can enable Password Complexity to require a
new password to consist of at least 8 characters and at most 64, where at least 1 character must be a
number, at least 1 a lower case letter, at least 1 an upper case letter and at least 1 a special character
from the keyboard, such as !@#$%^&*()_+. You can also require periodic changing of the password in
that screen by configuring Password must changed every (days).
Make a note of your new password, enter it in the following screen, then click Apply.
ZyWALL ATP Series User’s Guide
30