(2) Select the log schedule as "When Log is Full".
(3) Ping ZyWALL35's LAN port nonstop from the PC in LAN.
There will be high ping response delay from time to time.
13. [BUG FIX] SPR ID: 071228633
Symptom: Incoming ESP packets can't pass through ZyWALL with 1-1 NAT rule.
Condition:
PC1---ZWA(W)---(L)DUT(W)---(W)ZWB---PC2
|---------VPN-----------|
(1) Configure DUT as full-feature NAT; add a 1-1 rule on DUT for ZWA.
(2) Configure VPN tunnel between ZWA and ZWB, NAT-T is disabled on ZWA
and ZWB.
(3) After tunnel is built successfully, PC2 can't ping to PC1, except PC1 ping to
PC2 first.
14. [BUG FIX] SPR ID: 080131637
Symptom: IPSec Virtual Address Mapping for dynamic incoming rule doesn't work.
Condition:
TOPO:
VPN client=======(W)ZW35(L)-------PC
172.25.21.24 172.25.21.64 192.168.1.2
(1) ZW 35 is configured with a dynamic rule.
Virtual IP 192.168.201.2, private IP 192.168.1.2, remote IP 0.0.0.0
(2) VPN client is Greenbow.
(3) After the tunnel is up, the Ping from VPN client and the reply is from the ZW35's
WAN IP (172.25.21.24) instead of 192.168.201.2.
15. [BUG FIX] SPR ID: 080217402
Symptom: Cannot recognize service "PCAnywhere_Data(TCP5631)" in firewall rule.
Condition:
(1) Reset to default romfile.
(2) Go to eWC>FIREWALL>Rule Summary, then insert a new firewall rule.
(3) In eWC>FIREWALL - EDIT RULE, fill in "Rule Name" and select service
"PCAnywhere_Data(TCP5631)" to "Selected Service(s)" column.
(4) Click "Apply".
(5) In eWC>FIREWALL>Rule Summary, you can see the service change to
"Any(TCP)".
16. [BUG FIX] SPR ID: 080221669
Symptom: CI command "ip nat incikeport" had been removed in firmware 4.03.
Condition:
(1) Disable the engineer debug flag by "ATEN".
(2) Execute CI "ip nat incikeport" will fail.
Kommentare zu diesen Handbüchern