HP TMS zl Module Security Administrator's Guide

4-69
Configuring a VPN on the HP TMS zl Module
Configure an IPsec Client-to-Site VPN
Although the Manage IPsec wizard provides a great many options for manag-
ing IKE and IPsec settings, the sections below focus on using the wizard to
set up the necessary policies and proposals for a client-to-site VPN.
Create an IKE Policy for a Client-to-Site VPN
Follow these steps to create an IKE policy that the TMS zl Module can use to
negotiate VPN connections with remote clients:
1. In the PCM+ navigation tree, expand Network Management Home > Agent
Groups > Default Agent Group > Devices > TMS zl.
2. It is important that you are at the correct level in the navigation tree when
you launch the Manage IPsec wizard:
To configure one TMS zl Module, select the module in the navigation
tree.
If you want to configure multiple modules, select the TMS zl folder.
3. In the main configuration window, click TMS - VPN and then click the IPsec
tab.
Figure 4-37. PCM+ > TMS-VPN > IPsec Window
4. You can add an IKE policy in several ways:
Authentication Algorithm Same
Policy or Proposal Parameter Module-Specific or Same
for Every Selected Module