HP ProCurve Threat Management Solution Implementation Guide 2009-05

C-59
Configure VPNs Using the HP ProCurve Threat Management Services zl Module
Configure a Client-to-Site IPsec VPN for Macintosh IPSecuritas Clients
Create an IKE Policy for Connecting to IPSecuritas Clients
Follow these steps to create an IKE policy that the TMS zl Module can use to negotiate VPN
connections with remote IPSecuritas clients:
1. In the left navigation bar of the Web browser interface, click VPN > IPsec.
2. Click the IKEv1 Policies tab.
Figure C-72. VPN > IPsec > IKEv1 Policies Window
3. Click Add IKE Policy.
4. For IKE Policy Name, type a string that is unique to this policy. For this example, type
MacClients.
The string can include 1 to 15 alphanumeric characters.
5. For IKE Policy Type, select Client-to-Site (Responder).
Figure C-73. Add IKE Policy Window—Step 1 of 3
6. For Local Gateway, specify an IP address on this module. You have two options:
Click IP Address and type the IP address in the box.
Type the same IP address that you configured for the LocalGateway address object (the
IP address on the TMS VLAN that remote clients contact).