Create a Site-to-Site VPN Tunnel Between Cloud-Delivered Firewall Management Center-managed Firewall Threat Defense Devices
Use the following procedure to create a site-to-site VPN tunnel between two Firewall Threat Defense devices managed by Cloud-Delivered Firewall Management Center.
Before you begin
There should not be any pending deployments on the Firewall Threat Defense device.
Procedure
1 |
In the Security Cloud Control platform menu, choose . |
||||
2 |
In the left pane, choose . |
||||
3 |
Click the Create Tunnel ( |
||||
4 |
In the Peer Selection area, provide the following information:
|
||||
5 |
Click Next. |
||||
6 |
In the Peer Details area, provide the following information:
|
||||
7 |
Click Next. |
||||
8 |
In the IKE Settings area, choose the IKE versions to use during Internet Key Exchange (IKE) negotiations and specify the privacy configurations: For more information on the IKE policies, see Configuring the Global IKE Policy.
|
||||
9 |
Click Next. |
||||
10 |
In the IPSec Settings area, specify the IPSec configurations for peer 1 and peer 2. The corresponding IKEV proposals are available depending on the selection that is made in the IKE Settings step. For more information on the IPSec settings, see the About IPSec Proposals.
|
||||
11 |
In the Finish area, you will find a summary of the configurations you have completed. Read the configuration and then click Submit if you're satisfied. |
||||
12 |
|
||||
13 |
Perform the following steps to deploy the configuration to a Cloud-Delivered Firewall Management Center-managed Firewall Threat Defense device: |