HP TMS zl Module Security Administrator's Guide

4-474
Configuring a VPN on the HP TMS zl Module
Managing VPNs
Figure 4-368. PCM+ > TMS-VPN > Connections > IKEv1 SA
The IKEv1 SA window displays the following information about IKE SAs:
Policy Name—the name of the IKE policy used to establish the SA
Local Gateway—the TMS zl Module IP address or VLAN interface that
is the local gateway for the VPN tunnel
Remote Gateway—the IP address of the remote gateway for the VPN
tunnel (site-to-site VPN only)
Status—click the View status link to see more details. The Status
window for the IKE SA is displayed.
These details are displayed:
Peer Address—the IP address of the remote tunnel endpoint or client
with which the module has established the SA
State—the current state of the IKE SA
The state for an active IKE SA is SA_Mature.
Lifetime in Seconds—the remaining number of seconds before the SA
times out or is renegotiated
Lifetime in KB—the remaining number of kilobytes that the IKE SA can
carry before the SA times out or is renegotiated
However, if the security settings did not specify a lifetime in kilobytes,
the value always displays as 0.
New Group Mode Exchange Descriptor
Viewing Active IPsec VPN Tunnels
You can also view active VPN tunnels.