TMS zl Management and Configuration Guide ST.1.1.100430

7-293
Virtual Private Networks
Configure a GRE over IPsec VPN with Manual Keying
f. For Destination, specify the public IP address of the remote tunnel
endpoint.
g. Click Apply.
5. Permit local traffic that is sent across the tunnel:
a. For Action, leave the default, Permit Traffic.
b. For From, select the local zone.
c. For To, select the tunnel zone.
d. For Service, leave Any Service.
This is the most basic configuration. You could also permit only
certain types of traffic.
e. For Source, specify the local IP addresses that are allowed to send
traffic on the tunnel.
f. For Destination, specify the IP addresses behind the remote tunnel
endpoint that the local devices are allowed to reach.
Figure 7-255. Add Policy Window
g. Click the Advanced tab.
h. For TCP MSS, type the value that you determined is best for your
system. For example, type 1388.
i. Click the Basic tab.