TZ170 Enhanced Configuration:
First add Address Object to define remote network.
Make sure that the zone type is VPN, and that you add a network type object.

Go to Settings menu at VPN option add VPN new policy.
General:
Use IKE IPSec with Preshared Secret.
IPSec Primary Gateway is the remote real IP.
Type a Shared Secret.

Network:
For Local Network choose Lan Primary Subnet
For Remote Network choose the Address Object you just created.

Proposals:
Leave Default Settings accept Exchange – Change it to Main Mode

Advanced:
Check Enable Keep Alive
Check Enable Windows Networking
VPN Policy Bound to: choose the interface for VPN use

TZ170 Standard Configuration:
Go to Settings menu at VPN option add VPN new policy.
General:
Use IKE IPSec with Preshared Secret.
IPSec Primary Gateway is the remote real IP.
Type the same Shared Secret that you typed in the TZ170 Enhanced
At Destination Networks choose Specify Destination and add the remote network ID and mask.

Proposals:
Leave Default Settings accept Exchange – Change it to Main Mode

Advanced:
Check Enable Keep Alive
Check Enable Windows Networking
Choose VPN terminate at: LAN/OPT

Try Ping remote computer than check the VPN Policy for Green Light and the Active VPN Tunnel.

Done!

