Description
This type lets you setup an IPsec tunnel between gateways in an easy way with algorithms that are known to be secure. (IKEv2
tunnel with AES-GCM, AES-128 and SHA-256/512. DH group 14-16, 19-20 and forward secrecy.)
Properties
- Name
- Specifies a symbolic name for the interface. (Identifier)
- LocalNetwork
- The network on local side of the IPsec tunnel. The IPsec tunnel will be established between this network and the remote network.
- RemoteNetwork
- The network connected to the remote gateway. The IPsec tunnel will be established between the local network and this network.
- AuthMethod
- Certificate or Pre-shared key. (Default: PSK)
- PSK
- Selects the Pre-shared key to use with this IPsec Tunnel.
- GatewayCertificate
- Selects the certificate the firewall uses to authenticate itself to the other IPsec peer.
- RootCertificates
- Selects one or more root certificates to use with this IPsec Tunnel.
- RemoteEndpoint
- Specifies the IP address of the remote endpoint. This is the address the firewall will establish the IPsec tunnel to. It also
dictates from where inbound IPsec tunnels are allowed. (Optional)
- AutoInterfaceNetworkRoute
- Automatically add a route for this interface using the given remote network. (Default: Yes)
- SNMPIndex
- Interface index assigned by the system when persistent interface indexes are enabled. (Default: 0)
- Attribute
- Special Attribute of the current object. (Optional)
- MemberOfRoutingTable
- All or Specific. (Default: All)
- RoutingTable
- Specifies the PBR table to insert the interface IP route into. It also means that the specified routing table will be used
for all routing lookups, unless overridden by a PBR rule. (Default: main)
- Zone
- (Optional) Specifies the Zone that this interface is a member of. (Optional)
- Comments
- Text describing the current object. (Optional)