How to configure a vpn between a CloudGenix branch ION and a third-party device?
17423
Created On 10/28/20 20:48 PM - Last Modified 12/04/20 08:13 AM
Question
How to configure a vpn between a CloudGenix branch ION and a third-party device?
Environment
CloudGenix
Answer
The following Configuration Parameters are required;
- Name and Description
- Parent Interface: All third-party tunnels must be attached to a parent Interface (internet or private WAN)
- Scope (local or global): determines if the inner tunnel IP address is advertised through the fabric via routing protocols
- Endpoint: used in application policy for path selection and can contain a list of IP addresses and hostnames
- Peer Hostname: is used to determine the IPsec tunnel remote system IP address
- Peer IP: is used to determine the IPsec tunnel remote system IP address when no DNS name is available
- IPsec Profile: used for Basic IKE and ESP parameters
- IPSEC Authentication Override: used for locally significant override of IPsec Profile AUTH information (to keep the number of required IPSEC profiles to a minimum)
- Advanced Options: MTU