TMS zl Management and Configuration Guide ST.1.1.100226

7-373
Virtual Private Networks
Configure an HP ProCurve VPN Client
Table 7-32. Default TMS zl Module IKE Settings
17. If you enabled the XAUTH server in the module’s IKE policy, for Authen-
tication, select Preshared Key; Extended Authentication.
18. In the left navigation pane, expand Key Exchange (Phase 2) and click
Proposal 1.
Figure 7-319. ProCurve VPN Client—Security Policy Editor—Key Exchange
Proposal Window
19. In the right pane, configure security settings to match those in the TMS zl
Module’s IPsec proposal and IPsec policy:
a. For SA Life, match the SA lifetime settings in the module’s IPsec policy:
If the setting for seconds on the module is 0, select KBytes. In the
KBytes box, type the number of kilobytes configured on the
module.
Parameter Default Setting
Authentication Algorithm MD5
Encryption Algorithm 3DES
SA Life 28800 seconds
Diffie-Hellman (DH) Group 1