How to configure a vpn between a CloudGenix branch ION and a third-party device?

How to configure a vpn between a CloudGenix branch ION and a third-party device?

17423
Created On 10/28/20 20:48 PM - Last Modified 12/04/20 08:13 AM


Question


How to configure a vpn between a CloudGenix branch ION and a third-party device?

Environment


CloudGenix

Answer



The following Configuration Parameters are required;
  1. Name and Description
  2. Parent Interface: All third-party tunnels must be attached to a parent Interface (internet or private WAN)
  3. Scope (local or global): determines if the inner tunnel IP address is advertised through the fabric via routing protocols
  4. Endpoint: used in application policy for path selection and can contain a list of IP addresses and hostnames
  5. Peer Hostname: is used to determine the IPsec tunnel remote system IP address
  6. Peer IP: is used to determine the IPsec tunnel remote system IP address when no DNS name is available
  7. IPsec Profile: used for Basic IKE and ESP parameters
  8. IPSEC Authentication Override: used for locally significant override of IPsec Profile AUTH information (to keep the number of required IPSEC profiles to a minimum)
  9. Advanced Options: MTU

vpn


Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000HBNWCA4&lang=en_US&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail

Choose Language