TMS zl Management and Configuration Guide ST.1.0.090213

7-99
Virtual Private Networks
Layer 2 Tunneling Protocol (L2TP) over IPsec
Note Do not select (115) L2TP for Protocol. You must select UDP and then
specify the L2TP port (1701). L2TP needs to operate at Layer 4/5 in
this case instead of at Layer 3.
Select the IKE policy and the IPsec proposal that you just configured.
Disable PFS and leave the lifetime settings at their defaults (28800
seconds and 0 kilobytes).
•Clear the Enable IP Address Pool for IRAS (Mode Config) check box.
Leave advanced options at their defaults.
6. Create an L2TP policy.
See “Create an L2TP Policy” on page 7-99.
7. Add L2TP dial-in users.
See “Add L2TP Dial-in Users” on page 7-102.
8. Configure firewall access policies.
See “Access Policies for an L2TP over IPsec VPN” on page 7-121.
Create an L2TP Policy
Follow these steps to create an L2TP policy:
1. In the left navigation bar of the Web browser interface, click VPN > IPsec.
2. Click the L2TP Remote Access tab.
Figure 7-75. VPN > IPsec > L2TP Remote Access Window
3. Click Add L2TP Policy.