TMS zl Management and Configuration Guide ST.1.2.100916
7-154
Virtual Private Networks
Configure an L2TP over IPsec VPN
3. Click Add IPsec Proposal. The Add IPsec Proposal window is displayed.
Figure 7-128. Add IPsec Proposal Window
4. For Proposal Name, type a descriptive string of 1 to 32 alphanumeric
characters. The string must be unique to this proposal.
Often, it is a good idea to indicate the algorithms that you will select in
the name—for example, ESP3desMD5.
5. For Encapsulation Mode, select Transport Mode.
All traffic sent over the VPN will originate on the TMS zl Module or on the
remote endpoint, so this is the correct setting.
You must match the remaining settings to one of the default proposals sent by
Windows XP clients, which are shown in Table 7-17.
Table 7-17. IPsec Security Settings Proposed by Windows XP Clients
Note You could configure other settings. However, in that case, you could not use
the New Connection Wizard to set up the VPN connection on the Windows
client; instead, you would have to configure the IPsec settings for the connec-
tion manually and make sure to match the settings configured here.
Proposal Protocol Encryption Algorithm Authentication Algorithm
1 ESP 3DES SHA-1
2ESP 3DES MD5
3 ESP DES SHA-1
4ESP DES MD5