Zyxel ZyWALL 1100 [138/829] Regular expressions in searching ipsec sas

Zyxel USG 40W [138/829] Regular expressions in searching ipsec sas
Chapter 6 Monitor
ZyWALL/USG Series User’s Guide
138
6.15.1 Regular Expressions in Searching IPSec SAs
A question mark (?) lets a single character in the VPN connection or policy name vary. For example,
use “a?c” (without the quotation marks) to specify abc, acc and so on.
Wildcards (*) let multiple VPN connection or policy names match the pattern. For example, use
“*abc” (without the quotation marks) to specify any VPN connection or policy name that ends with
“abc”. A VPN connection named “testabc” would match. There could be any number (of any type) of
characters in front of the “abc” at the end and the VPN connection or policy name would still match.
A VPN connection or policy name named “testacc” for example would not match.
A * in the middle of a VPN connection or policy name has the ZyWALL/USG check the beginning and
end and ignore the middle. For example, with “abc*123”, any VPN connection or policy name
starting with “abc” and ending in “123” matches, no matter how many characters are in between.
The whole VPN connection or policy name has to match if you do not use a question mark or
asterisk.
6.16 The SSL Screen
The ZyWALL/USG keeps track of the users who are currently logged into the VPN SSL client. Click
Monitor > VPN Monitor > SSL to display the user list.
Use this screen to do the following:
View a list of active SSL VPN connections.
Log out individual users and delete related session information.
Once a user logs out, the corresponding entry is removed from the screen.
Policy This field displays the content of the local and remote policies for this IPSec SA.
The IP addresses, not the address objects, are displayed.
IKE Name This field displays the Internet Key Exchange (IKE) name.
Cookies This field displays the cookies information that initiates the IKE.
My Address This field displays the IP address of local computer.
Secure Gateway This field displays the secure gateway information.
Up Time This field displays how many seconds the IPSec SA has been active. This field
displays N/A if the IPSec SA uses manual keys.
Timeout This field displays how many seconds remain in the SA life time, before the
ZyWALL/USG automatically disconnects the IPSec SA. This field displays N/A if
the IPSec SA uses manual keys.
Inbound (Bytes) This field displays the amount of traffic that has gone through the IPSec SA from
the remote IPSec router to the ZyWALL/USG since the IPSec SA was established.
Outbound (Bytes) This field displays the amount of traffic that has gone through the IPSec SA from
the ZyWALL/USG to the remote IPSec router since the IPSec SA was established.
Table 58 Monitor > VPN Monitor > IPSec (continued)
LABEL DESCRIPTION

Содержание

Похожие устройства