TMS zl Management and Configuration Guide ST.1.1.100226

7-130
Virtual Private Networks
Configure an IPsec Site-to-Site VPN with Manual Keying
Do one of the following to specify addresses:
Select Any to permit any IP address.
Select the single-entry IP, range, or network address object that
you configured for remote endpoints.
Manually type an IP address, IP address range, or network
address in CIDR format.
e. Remote Port is present if you selected TCP or UDP for Protocol. Type the
port number for the service that you want to allow local endpoints to
access in the remote network. Or leave the field blank (which allows
traffic to any port).
f. If you selected ICMP for the protocol, for ICMP Type, select Any, Echo,
or Timestamp.
9. For Proposal, select a previously configured IPsec proposal.
The IPsec proposal specifies the IPsec mode, IPsec protocol, and the
authentication and encryption algorithms that secure the VPN connec-
tion. See “Create an IPsec Proposal” on page 7-123.
10. Click Next.
11. For Key Exchange Method, select Manual.
Figure 7-111. Add IPsec Policy Window—Step 2 of 4 (Top Section)
Refer to Figure 7-112 for help in configuring the next settings.