HP TMS zl Module Security Administrator's Guide
4-265
Configuring a VPN on the HP TMS zl Module
L2TP over IPsec VPNs
Figure 4-181. Manage IPsec Wizard > Add IKEv1 Policy (step 2) Window
12. Under IKE Authentication, configure the authentication method for the IKE
proposal:
a. For Key Exchange Mode, select Main Mode.
Main mode is required for the Windows L2TP clients.
b. For Authentication Method, select Preshared Key.
c. Type a string of 12 to 49 alphanumeric or special characters in the
Preshared Key box. Type the same string in the Confirm Preshared
Key box.
The string (which is case-sensitive) must match the string that is
configured on the remote endpoints.
13. Under Security Parameters Proposal, configure the security settings pro-
posed by the TMS zl Module for the IKE SA.
A Windows XP client sends five IKE security proposals, four of which are
compatible with the TMS zl Module. See Table 4-32 for a list of these
proposals; you must configure the Security Parameters Proposal to match
one. (Note that Windows Vista clients only support proposal 1.)