TMS zl Management and Configuration Guide ST.1.0.090213

7-32
Virtual Private Networks
IPsec VPNs
Figure 7-17. Add IKE Policy Window—Step 1 of 3
Remote endpoints will initiate the VPN connection. The TMS zl Module
will respond to their IKE messages.
Note You must configure firewall access policies to allow the IKE messages
from the remote endpoints. See “Configure Firewall Access Policies for
Your VPN” on page 7-112.
6. For Local Gateway, specify an IP address that the remote endpoint can
reach. You have two options:
•Select IP Address and type an IP address on this module in the box.
The IP address must be an IP address that is already configured on
the TMS zl Module. Type the address that the remote endpoints can
reach.
•Select Use VLAN IP Address and select a VLAN from the list, which
includes all TMS VLANs on this module.
Select the VLAN on which the remote endpoints reach the TMS zl
Module.