TMS zl Management and Configuration Guide ST.1.0.090213
7-264
Virtual Private Networks
Configure the VPN Client
Key Exchange Mode Main Mode Add IKE Policy—Step 2
of 3
Authentication Meth-
od
• Preshared Key
• RSA Signature
• DSA Signature
Setting in the Edit Au-
thentication Methods
window (step 51 on
page 7-245)
Preshared Key (if Pre-
shared key was se-
lected)
Matches the string configured on the remote
client
String in the Edit Authen-
tication Methods win-
dow (step 51 on page 7-
245)
Security Parameters
Proposal
5. SA Lifetime—300 to 86400 seconds
6. DH Group:
• Group 1 (760)
• Group 2 (1024)
7. Encryption Algorithm:
•DES
•3DES
8. Authentication Algorithm:
•MD5
• SHA-1
IKE Security Methods
(step 61 on page 7-250)
XAUTH Configuration Disable XAUTH Add IKE Policy—Step 3
of 3
IPsec proposal
Encapsulation Mode Transport Add IPsec Proposal
Protocol ESP Custom Security Meth-
od Settings for the filter
action (step 42 on
page 7-240)
Encryption Algorithm • DES
•3DES
Encryption algorithm in
Custom Security Meth-
od Settings for the filter
action (step 42-c on
page 7-240)
Authentication Algo-
rithm
•MD5
• SHA-1
Integrity algorithm in
Custom Security Meth-
od Settings for the filter
action (step 42-b on
page 7-240)
Parameter Valid Settings Configuration Window Matching Setting on the
Windows Vista Client