Or please check your password matches the settings in the user account.ĥ Make sure the service HTTPS Port on IPSec VPN Client application is available.Ħ Make sure the To-ZyWALL security policies allow IPSec VPN traffic to the ZyWALL/USG. ZyWALL/USG and ZyWALL IPSec VPN Client must use the same Active Protocol, Encapsulation, Proposal, PFS and set correct Local Policy to establish the IKE SA.Ĥ If you see log message as below, please make sure you create a user account for the ZyWALL IPSec VPN Client user on ZyWALL/USG or the external authentication server. ZyWALL/USG and ZyWALL IPSec VPN Client must use the same Encryption, Authentication method, DH key group and ID Type/Content to establish the IKE SA.ģ If you see that Phase 1 IKE SA process done but still get or log message as below, please check ZyWALL/USG Phase 2 Settings.
PC behind ZyWALL/USG > Window 7 > cmd > ping 172.101.30.73ġ If you see log message such as below, please make sure both ZyWALL/USG and ZyWALL IPSec VPN Client use the same Pre-Shared Key to establish the IKE SA.Ģ If you see or log message such as below, please check ZyWALL/USG Phase 1 Settings. PC with ZyWALL IPSec VPN Client installed > Window 7 > cmd > ping 192.168.1.33 Ensure that both computers have Internet access (via the IPSec devices). Click Next, you will see it’s processing VPN configuration from the server.ĬONFIGURATION > Get from Server > Step 1: AuthenticationĬONFIGURATION > Get from Server > Step 2: ProcessingĤ Then, you will see the Configuration successful page, click OK to exit the wizard.ĬONFIGURATION > Get from Server > Configuration successfulĥ Then, you will see the Configuration successful page, click OK to exit the wizard.ġ Go to ZyWALL/USG CONFIGURATION > VPN > IPSec VPN > VPN Connection, the Status connect icon is lit when the interface is connected.ĬONFIGURATION > VPN > IPSec VPN > VPN ConnectionĢ Go to ZyWALL/USG MONITOR > VPN Monitor > IPSec and verify the tunnel Up Time and Inbound(Bytes)/Outbound(Bytes) Traffic.ģ To test whether or not a tunnel is working, ping from a computer at one site to a computer at the other. Enter the Login user name and Password exactly as configured on the ZyWALL or external authentication server. If you changed the default HTTPS Port on the ZyWALL/USG, and then enter the new one here.
Click Activate and Apply to save the configuration.ĬONFIGURATION > VPN > IPSec VPN > Configuration Provisioningġ Download ZyWALL IPSec VPN Client software from ZyXEL Download Library: Ģ Open ZyWALL IPSec VPN Client, select CONFIGURATION > Get from Server.ģ Enter the WAN IP address or URL for the ZyWALL/USG in the Gateway Address. Then, go to the Configuration section and click Add to bind a configured VPN Connection to Allowed User. In the General Settings section, select the Enable Configuration Provisioning. Quick Setup > VPN Setup Wizard > Welcome > Wizard Type > VPN Settings > Wizard Completedħ Go to CONFIGURATION > Object > User/Group > Add A User and create a user account for the ZyWALL IPSec VPN Client user.ĬONFIGURATION > Object > User/Group > Add A UserĨ Go to CONFIGURATION > VPN > IPSec VPN > Configuration Provisioning. The Phase 1 rule settings appear in the VPN > IPSec VPN > VPN Gateway screen and the Phase 2 rule settings appear in the VPN > IPSec VPN > VPN Connection screen. Quick Setup > VPN Setup Wizard > Welcome > Wizard Type > VPN Settings-3Ħ Now the rule is configured on the ZyWALL/USG.
Quick Setup > VPN Setup Wizard > Welcome > Wizard Type > VPN Settings-2ĥ This screen provides a read-only summary of the VPN tunnel. Set Local Policy to be the IP address range of the network connected to the ZyWALL/USG. Quick Setup > VPN Setup Wizard > Welcome > Wizard Type > VPN Settings-1Ĥ Type a secure Pre-Shared Key (8-32 characters). You may use 1-31 alphanumeric characters. Quick Setup > VPN Setup Wizard > Wizard Typeģ Type the Rule Name used to identify this VPN connection (and VPN gateway). Click Next.Ģ Choose Express to create a VPN rule with the default phase 1 and phase 2 settings and use a pre-shared key to be the authentication method. 1 In the ZyWALL/USG, go to CONFIGURATION > Quick Setup > VPN Setup Wizard, use the VPN Settings for Configuration Provisioning wizard to create a VPN rule that can be used with the ZyWALL IPSec VPN Client.