HP TMS zl Module Security Administrator's Guide

4-314
Configuring a VPN on the HP TMS zl Module
L2TP over IPsec VPNs
8. A window is displayed, showing the setting being applied to the TMS zl
Module. When you see that they have been applied successfully, click
Close.
If your RADIUS server (or directory) does not provide dial-in addresses for
authenticated L2TP clients, you must edit the RADIUS domain to create an IP
address pool so that the TMS zl Module can assign the appropriate addresses.
You can also specify DNS and WINS servers for the authenticated clients.
Complete the following steps:
1. You should be at the TMS-Network > Authentication tab.
2. Click the L2TP Addresses tab.
The domain names of RADIUS servers configured on the TMS zl Module are
listed below it. (L2TP users must be within one of these domains in order to
be authenticated. For example, if the domain is hplabs.com, user1 must
authenticate as user1@hplabs.com.)
However, if you did not configure a domain name for a RADIUS server when
you added it earlier, the domain is listed as global in the RADIUS Domain field.
All users without a specific domain name or with a domain name that is not
specified for another server will be authenticated to the global server.
Figure 4-232. PCM+ > TMS-Network > Authentication > L2TP Addresses Window
3. Right-click the domain that you are configuring and click Modify. The Edit
RADIUS domain window is displayed.