TMS zl Management and Configuration Guide ST.1.2.100916
7-81
Virtual Private Networks
Configure an IPsec Site-to-Site VPN with IKE
Figure 7-58. Example IPsec Site-to-Site VPN
6. For Local Gateway, specify an IP address on this module. You have two
options:
• Select IP Address and type the IP address in the box.
The IP address must be an IP address configured on the TMS zl
Module. Type an address that the remote gateway can reach (indi-
cated by 1 in the example figure).
• Select Use VLAN IP Address and select a VLAN from the list.
Select the VLAN on which the remote gateway reaches the TMS zl
Module.
Note Later you will configure firewall access policies to allow the TMS zl
Module to send IKE messages to the remote gateway.
7. For Remote Gateway, specify the IP address or fully qualified domain name
(FQDN) of the remote gateway (indicated by 3 in the example figure):
• Select IP Address (Peer ID) and type the IP address in the box.
You must type the IP address that the remote gateway specifies for
its local IP address. Use the IP address at which the TMS zl Module
can reach the remote gateway (typically, a public IP address).
• Select Name and type the FQDN in the box.
The TMS zl Module must be able to resolve the FQDN to the remote
gateway’s accessible IP address. (Make sure that you have configured
a DNS server.)