TMS zl Management and Configuration Guide ST.1.2.100916
7-478
Virtual Private Networks
Configure a Windows Vista Client for L2TP over IPsec
Figure 7-426. Windows Vista—Key Exchange
Settings Window
55. If the TMS zl Module IPsec policy enables PFS, select the Master key
perfect forward secrecy (PFS) check box. Then select the group that
matches the DH group in the module’s IPsec policy.
56. In the minutes box under Authenticate and generate a new key after every,
type a value that corresponds to the SA lifetime in the TMS zl Module’s
IKE policy.
Note that setting on the Windows client is in minutes while the setting on
the TMS zl Module is in seconds. Make sure to divide the number on the
module by 60. For example, if you left the default setting on the module
(28800 seconds), type 480 in the minutes box.
57. Click Methods.