I am trying to setup a Bordermanager 3.9 (sp1) vpn with a Checkpoint vpn

when I setup the master on the Bordermanager server, I used certificates and
put there my protected network and I enabled IP RIP.
Now I need to add the slave which with I want to use PSS, do I need to
change from the master vpn member the certificate to pre shared key, enable
pss and put the secret also there. I hope not so, because when clicking on
the I (Information) icon, I can see the secret as well as other
administrators can see that.
also do I need to disable ip rip on this master vpn member because of the
3rd party setup?