TMS zl Management and Configuration Guide ST.1.1.100430

10-100
Troubleshooting
Troubleshooting the TMS zl Module in Routing Mode
i. In the Firewall > NAT > NAT Policies window, click Add Policy.
ii. For Translate, select None.
iii. For From Zone, select Internal, which is the zone for local end-
points in the example VPN.
iv. For To Zone, select External, which is the zone for remote end-
points in the example VPN.
v. For Source, specify 192.168.3.0/24, which are the local endpoints
configured in the example IPsec policy traffic selector.
vi. For Destination, specify 192.168.5.0/24, which are the remote end-
points configured in the example IPsec policy traffic selector.
vii. For Insert Position, type 1.
Figure 10-23.Example NAT Exclusion Policy
viii. Click OK.
d. Attempt to establish the VPN by sending traffic from the test client.
Evaluate the connection and take the appropriate next steps (if any).
3. Check routes in the Network > Routing > Static Routes window and verify
that the correct routes are in place.
In a site-to-site VPN, the TMS zl Module must have a route to:
The endpoints behind the remote gateway