TMS zl Management and Configuration Guide ST.1.1.100226
7-206
Virtual Private Networks
Configure a GRE Tunnel
g. Click the Advanced tab.
h. For TCP MSS, type the value that you determined is best for your
system. For example, type 1436.
i. Click the Basic tab.
j. Click Apply.
6. If necessary, repeat step 5 to permit other traffic.
7. Permit remote traffic that arrives on the tunnel (after it is unencapsulated
from GRE):
a. For Action, leave the default, Permit Traffic.
b. For From, select the tunnel zone.
c. For To, select the local zone.
d. For Service, leave Any Service.
This is the most basic configuration. You could also create access
policies that permit only certain types of traffic.
e. For Source, specify the IP addresses behind the remote tunnel end-
point that are allowed to send traffic on the tunnel.
f. For Destination, specify the local IP addresses that the remote end-
points are allowed to reach.
Figure 7-170. Add Policy Window