HP TMS zl Module Security Administrator's Guide
4-432
Configuring a VPN on the HP TMS zl Module
Configure Global IPsec Settings
Figure 4-332. Manage IPsec Wizard > Edit IPsec Settings
3. By default, the Enable IPsec check box is selected:
• Clear the check box to disable IPsec VPN functionality on the entire
TMS zl Module.
When this setting is disabled, the module will not act as a VPN
gateway, initiate VPN tunnels, nor respond to IKE and IPsec messages
from remote endpoints. The module will forward IKE and IPsec traffic
to endpoints behind it if you have created access policies that allow
such traffic.
• Select the check box to re-enable the IPsec VPN functionality.
Your IKE, IPsec, and L2TP policies can now take affect.
4. Configure how the TMS zl Module handles ICMP error messages:
• Select the Send ICMP error messages check box to have the TMS zl
Module return an ICMP error message when it receives bad data.
By default, this check box is selected.
• Select the Handle ICMP error messages check box to have the TMS zl
Module accept incoming ICMP error messages.