To assign policies and configurations for a dynamic site-to-site IPsec VPN

Purpose

Perform this procedure if the Tunnel Type parameter in Step 13 of To configure an IPsec VPN is set to Dynamic (Site-to-Site).

Steps
 

Select an IPsec tunnel template.


Configure the Pre-shared key parameter.


Click Finish.

The NFM-P performs the following:

  • creates a secure VPRN service and sites

    • creates an access interface

    • creates a tunnel interface

    • configures the service name

  • creates the IES or VPRN delivery service and sites

    • creates an access interface

    • configures the IP address of the SAP

    • assigns a tunnel group with an auto-generated outer encapsulation as a public SAP

    • creates an IPsec gateway

    • assigns the secure service

    • assigns the tunnel interface of the secure service

    • assigns the tunnel template

    • assigns the IKE policy

    • configures the local gateway address

    • configures the pre-shared key

    • configures the service name

  • if the Link Corporate and Secure Service parameter is enabled, creates a composite service that contains the corporate and secure services


To view the IPsec VPN, click View the newly created IPsec Secured VPN. The IPsec VPN (Create) step form closes, and the IPsec VPN form opens.


Close the forms.

End of steps