TMS zl Management and Configuration Guide ST.1.1.100226
A-147
Command-Line Reference
IPsec Policy Context
ip-range. This command sets the IP address pool for remote clients. Each
remote client will be assigned an address from this pool while visiting your
private network. You can configure several address ranges. To configure (or
delete) an address range, enter the following:
Syntax: [no] ip-range <start IP address> <end IP address>
Replace <start IP address> and <end IP address> with the first IP address
and the last IP address for the address range, respectively.
dns. To configure the remote clients’ DNS servers while they are on the VPN
connection, enter the following command:
Syntax: dns primary <IP address> [secondary <IP address>]
Replace <IP address> with the IP address of a DNS server that the remote
client is allowed to access.
wins. To configure the remote clients’ WINS servers while they are on the
VPN connection, enter the following command:
Syntax: wins primary <IP address> [secondary <IP address>]
Replace <IP address> with the IP address of a WINS server that the remote
client is allowed to access.
IPsec Policy Bypass Context
The IPsec policy bypass context includes the commands specific to configur-
ing a bypass IPsec policy. This type of policy selects traffic that is not secured
by an IPsec SA but is forwarded toward its destination. Refer to Chapter 7:
“Virtual Private Networks” for an explanation of when you require a bypass
policy. (This context is available only when the TMS zl Module is in routing
mode.)