Configure a Policy-Based Site-to-Site VPN Connection
You can configure a policy-based site-to-site VPN connection to add spokes to policy-based site-to-site VPN topologies using the device template.
Before you begin
-
Configure a minimum of one policy-based site-to-site VPN (
). -
Review Prerequisites for Configuring Device Templates and Guidelines and Limitations for Device Templates.
Procedure
1 |
Choose . |
2 |
Click the edit icon adjacent to the device template that you want to edit. |
3 |
Click the VPN tab. |
4 |
Click Add VPN Connection. |
5 |
Choose a policy-based site-to-site VPN topology from the VPN Topology drop-down list. The Add VPN Connection dialog box expands and you can configure the following parameters: |
6 |
Click Save. |
What to do next
-
Note that before you apply a template to a device, to configure device-specific values for the protected networks, add these objects in Template Settings > Template Parameters > Add Network Objects Overrides.
-
Map the device interfaces to the template interfaces (Model Mapping).
-
Apply the template to a device.