TMS zl Management and Configuration Guide ST.1.2.100916

7-86
Virtual Private Networks
Configure an IPsec Site-to-Site VPN with IKE
Figure 7-61. Add IKE Policy Window—Step 3 of 3 (XAUTH Server Enabled)
•For Authentication Type, select Generic or CHAP.
Select Generic unless the client is configured to use CHAP.
At some point, you must configure the username and password for
the remote gateway in one of these locations:
An external RADIUS server—Remember, to add the RADIUS
server in the Network > Authentication > RADIUS window.
On the module itself—In the Network > Authentication > Firewall/
XAUTH Users window, add the remote gateway account to any user
group that you want.
For instructions, see “User Authentication” in Chapter 4: “Firewall.”
Select TMS acts as XAUTH Client: