TMS zl Management and Configuration Guide ST.1.0.090213
7-110
Virtual Private Networks
Generic Routing Encapsulation (GRE)
Figure 7-87. VPN > GRE Window (Tunnel Added)
14. Click Save.
Remember to configure firewall access policies to allow traffic over the
tunnel. See “Access Policies for a GRE Tunnel” on page 7-126.
Configure GRE over IPsec
You must complete these tasks to configure GRE over IPsec:
1. Create a GRE tunnel for the traffic that you want to secure with GRE over
IPsec.
See “Create a GRE Tunnel” on page 7-107.
2. Create an IKEv1 policy, if desired. You can also use manual keying, in
which case move directly to the next step.
Use these settings:
• IKE Policy Type = Site-to-Site (Initiator & Responder).
• Local Gateway = IP address that you configured as the local IP address
for the tunnel (not the tunnel interface IP address)
You could also select the VLAN on which this IP address is configured.
• Remote Gateway = accessible IP address on the remote tunnel end-
point (not the remote device’s tunnel interface address)
You could also type the DNS name associated with this IP address.
(Make sure that the TMS zl Module has the correct DNS settings).
You can configure other settings as you choose, making sure to match
them on the remote tunnel endpoint.
See “Create an IKE Policy for a Site-to-Site IPsec VPN” on page 7-22.