3.79. LANtoLANVPN

Description

This type lets you setup an IPsec tunnel between gateways in an easy way with algorithms that are known to be secure. (IKEv2 tunnel with AES-GCM, AES-128 and SHA-256/512. DH group 14-16, 19-20 and forward secrecy.)

Properties

Name
Specifies a symbolic name for the interface. (Identifier)
LocalNetwork
The network on local side of the IPsec tunnel. The IPsec tunnel will be established between this network and the remote network.
RemoteNetwork
The network connected to the remote gateway. The IPsec tunnel will be established between the local network and this network.
AuthMethod
Certificate or Pre-shared key. (Default: PSK)
PSK
Selects the Pre-shared key to use with this IPsec Tunnel.
GatewayCertificate
Selects the certificate the firewall uses to authenticate itself to the other IPsec peer.
RootCertificates
Selects one or more root certificates to use with this IPsec Tunnel.
RemoteEndpoint
Specifies the IP address of the remote endpoint. This is the address the firewall will establish the IPsec tunnel to. It also dictates from where inbound IPsec tunnels are allowed. (Optional)
AutoInterfaceNetworkRoute
Automatically add a route for this interface using the given remote network. (Default: Yes)
SNMPIndex
Interface index assigned by the system when persistent interface indexes are enabled. (Default: 0)
Attribute
Special Attribute of the current object. (Optional)
MemberOfRoutingTable
All or Specific. (Default: All)
RoutingTable
Specifies the PBR table to insert the interface IP route into. It also means that the specified routing table will be used for all routing lookups, unless overridden by a PBR rule. (Default: main)
Zone
(Optional) Specifies the Zone that this interface is a member of. (Optional)
Comments
Text describing the current object. (Optional)