TMS zl Management and Configuration Guide ST.1.0.090213
7-127
Virtual Private Networks
Configure Firewall Access Policies for Your VPN
Finally, determine the zone for local endpoints that are allowed to send traffic
over the tunnel. The instructions below will refer to this zone as the “local
zone.”
1. In the left navigation bar of the Web browser interface, click Firewall >
Access Policies.
2. If you have not already done so, create a service object for GRE:
Note You could alternatively specify the service manually when you create
policies.
a. Click the Services tab.
b. Click Add Service. The Add Service window is displayed.
Figure 7-95. Add Service Window
c. For Name, type a descriptive string such as GRE.
d. For Protocol, select (47) GRE under All Protocols.
e. Click Apply.
f. Click Close.
3. Click the Unicast tab.
4. Click Add a Policy.
5. Allow GRE traffic from the remote tunnel endpoint:
a. For Action, leave the default, Permit Traffic.
b. For From, select the remote zone.
c. For To, select Self.
d. For Service, select the object that you configured for GRE.