HP TMS zl Module Security Administrator's Guide
4-256
Configuring a VPN on the HP TMS zl Module
L2TP over IPsec VPNs
You can, of course, configure other objects that are appropriate for your
environment. And you might choose not to configure some of the objects. For
example, you might not know the actual IP address of every remote VPN client,
particularly when remote users connect through the Internet. Or the IP
addresses might not be contiguous, preventing you from placing them in a
single-entry object (which are required for address objects used in VPNs).
Create an IKE Policy for an L2TP over IPsec VPN
Follow these steps to create an IKE policy that the TMS zl Module can use to
negotiate VPN connections with remote L2TP clients:
1. In the PCM+ navigation tree, expand Network Management Home > Agent
Groups > Default Agent Group > Devices > TMS zl.
2. It is important that you are at the correct level in the navigation tree when
you launch the Manage IPsec wizard:
• To configure one TMS zl Module, select the module in the navigation
tree.
• If you want to configure multiple modules, select the TMS zl folder.
3. In the main configuration window, click TMS - VPN and then click the IPsec
tab.