TMS zl Management and Configuration Guide ST.1.2.100916
7-159
Virtual Private Networks
Configure an L2TP over IPsec VPN
Replace <slot ID> with the ID of the slot in which the TMS zl Module
is installed. Replace <policy name> with the IPsec policy name. (You
can use the show ipsec policy command to view the name.)
Note If your traffic selector will include traffic that is also selected for NAT, you
must create a NAT exclusion policy. See “Exclusion NAT Policies” in
Chapter 5: “Network Address Translation.”
Refer to Figure 7-132 for help configuring the next setting.
Figure 7-132. Example L2TP over IPsec VPN
8. For Traffic Selector, configure these settings:
a. For Protocol, select UDP.
Note Do not select (115) L2TP for Protocol. You must select UDP and then specify
the L2TP port (1701) for the local port. L2TP needs to operate at Layer 4/
5 in this case instead of at Layer 3.