HP TMS zl Module Security Administrator's Guide

4-354
Configuring a VPN on the HP TMS zl Module
GRE Tunnels
Figure 4-262. Manage IPsec Wizard > Add IKEv1 Policy (step 3) Window
16. If you want, configure XAUTH, which is an optional additional layer of
security. Otherwise, leave Disable XAUTH selected and move to step 17.
You can configure the TMS zl Module to act either as a client (authenticate
itself) or as a server (authenticate the remote gateway):
•Select Enable XAUTH Server.
i. For Authentication Type, select Generic or CHAP.
At some point, you must configure the username and password for
the remote gateway in one of these locations:
An external RADIUS server—Remember, to add the RADIUS
server in the Network > Authentication > RADIUS window.
On the module itself—In the Network > Authentication > Firewall/
XAUTH Users window, add the remote gateway account to any user
group that you want.
For more information on setting up authentication, see Chapter 6:
“Configuring the TMS zl Module Firewall.”
•Select Enable XAUTH Client: