TMS zl Management and Configuration Guide ST.1.1.100430
7-100
Virtual Private Networks
Configure an IPsec Site-to-Site VPN with IKE
10. Click Retrieve certificate through SCEP.
The CA root certificate is displayed in the VPN > Certificates > Certificate
Authorities window. (If the certificate is not imported, check the IP address or
FQDN that you set in step 3 on page 7-99.)
Figure 7-82. VPN > Certificates > Certificate Authorities Window
11. You must install the CRL before you install the TMS zl Module’s IPsec
certificate. Ask your CA administrator if you need a particular CGI path
to the CRL distribution point. If you do, follow these steps:
a. Click the SCEP tab.
b. For CGI-Path, type the new path given to you by your CA.
For example, for a Windows 2008 CA, you might type /CertEnroll/
<domainname-CAname>.crl.
c. Click Apply My Changes.
12. Click the CRL tab.
Figure 7-83. VPN > Certificates > CRL Window
13. Click Retrieve CRL through SCEP.