TMS zl Management and Configuration Guide ST.1.1.100226

A-142
Command-Line Reference
IPsec Policy Context
To verify your location in the CLI, check the prompt. In the IPsec manual keys
context, the prompt is ProCurve(tms-module-<slot
ID>:ipsec:apply:manual)#.
To exit the IPsec manual keys context, enter the following:
Syntax: exit
From the IPsec manual keys context, you can:
Set the local gateway (page A-142)
Set the remote gateway (page A-142)
Set the authentication keys (page A-140)
Set the encryption keys (page A-143)
Set the SPI number (page A-144)
apply. Once you have configured all parts of the IPsec policy, you must apply
the policy. The apply command verifies that all required settings are config-
ured and then adds or edits the IPsec policy. (If the requirements are not met,
the command does not take effect, and an error message indicates which
settings are missing.) Enter the following command:
Syntax: apply
This command is also available from the IPsec policy, IPsec policy apply, IPsec
policy bypass, IPsec policy deny, IPsec auto keys, and IPsec IRAS contexts.
local-gateway. This command specifies the IP address that acts as the local
gateway for the VPN:
Syntax: local-gateway < <local IP address> | vlan <VLAN ID> >
Replace <local IP address> with the IP address on the TMS zl Module that
the remote gateway contacts.
Replace <VLAN ID> with the TMS VLAN on which the remote gateway
reaches the TMS zl Module.
For example:
ProCurve(tms-module-<slot ID>:ipsec:apply:manual)#
local-gateway vlan 1
remote-gateway. This command specifies the remote gateways IP address.
Syntax: remote-gateway <remote IP address>