TMS zl Management and Configuration Guide ST.1.1.100430

7-262
Virtual Private Networks
Configure a GRE over IPsec VPN with IKE
Figure 7-229. Add Policy Window
g. Click the Advanced tab.
h. For TCP MSS, type the value that you determined is best for your
system. For example, type 1388.
i. Click the Basic tab.
j. Click Apply.
8. Permit remote traffic that arrives on the tunnel:
a. For Action, leave the default, Permit Traffic.
b. For From, select the tunnel zone.
c. For To, select the local zone.
d. For Service, leave Any Service.
This is the most basic configuration. You could also create access
policies that permit only certain types of traffic.
e. For Source, specify the remote IP addresses that are allowed to send
traffic on the tunnel.
f. For Destination, specify the local addresses that the remote endpoints
are allowed to reach.
g. Click the Advanced tab.