HP TMS zl Module Security Administrator's Guide
4-474
Configuring a VPN on the HP TMS zl Module
Managing VPNs
Figure 4-368. PCM+ > TMS-VPN > Connections > IKEv1 SA
The IKEv1 SA window displays the following information about IKE SAs:
• Policy Name—the name of the IKE policy used to establish the SA
• Local Gateway—the TMS zl Module IP address or VLAN interface that
is the local gateway for the VPN tunnel
• Remote Gateway—the IP address of the remote gateway for the VPN
tunnel (site-to-site VPN only)
• Status—click the View status link to see more details. The Status
window for the IKE SA is displayed.
These details are displayed:
• Peer Address—the IP address of the remote tunnel endpoint or client
with which the module has established the SA
• State—the current state of the IKE SA
The state for an active IKE SA is SA_Mature.
• Lifetime in Seconds—the remaining number of seconds before the SA
times out or is renegotiated
• Lifetime in KB—the remaining number of kilobytes that the IKE SA can
carry before the SA times out or is renegotiated
However, if the security settings did not specify a lifetime in kilobytes,
the value always displays as 0.
• New Group Mode Exchange Descriptor
Viewing Active IPsec VPN Tunnels
You can also view active VPN tunnels.