TMS zl Management and Configuration Guide ST.1.0.090213
7-113
Virtual Private Networks
Configure Firewall Access Policies for Your VPN
5. Allow IKE messages from the remote gateway.
a. For Action, accept the default: Permit Traffic.
b. For From, select the remote zone.
c. For To, select Self.
d. For Service, select isakmp.
e. For Source, specify the IP address that you configured for the remote
gateway in the IKE policy.
You can select a previously-configured address object or type the IP
address manually (click Options and select Enter custom IP, IP/mask or
IP-Range).
f. For Destination, leave Any Address or specify the IP address that you
configured for the local gateway in the IKE policy.
Figure 7-88. Add Policy Window
g. Click Apply.
6. Permit IKE messages from the TMS zl Module to the remote gateway:
a. For Action, leave the default Permit Traffic.
b. For From, select Self.
c. For To, select the remote zone.