TMS zl Management and Configuration Guide ST.1.2.100916

A-131
Command-Line Reference
IPsec Policy Context
IPsec Policy Context
Figure A-10. IPsec Policy Context
The IPsec policy context, available only when the TMS zl Module is in routing
mode, includes commands for creating (or editing) an IPsec policy. This
context includes several other contexts with the commands that are specific
to certain types of IPsec policies:
IPsec policy apply context—for IPsec policies that select traffic for the
VPN
This context also includes these contexts:
IPsec auto keys context—for IPsec policies that use IKE
IPsec manual keys context—for IPsec policies that use manual keying
IPsec IRAS context—for configuring IKE mode config
IPsec policy bypass context—for IPsec policies that select traffic that is
not secured by the VPN but is forwarded
IPsec policy deny context—for IPsec policies that select traffic that is
dropped
The commands that you enter in the IPsec policy context do not take effect
until you apply them, which you cannot do until you have completed all
necessary configurations. You can move between any of the IPsec policy
contexts freely before you apply the configuration. However, if you exit the
IPsec policy context entirely before applying your commands, your settings
are lost.