Configure VPN connections in the Site Configuration > VPN Tab. Existing VPN connections will be visible and can be quickly Enabled/Disabled via the ‘Enable’ toggle. Under the ‘Status’ column, the VPN connections will either be ‘Up’ or ‘Down’.
To create a new VPN connection, click “+ New VPN connection” and you will need the following information:
Connection name (required)
Remote IP (required)
Pre-shared key (required)
Local subnet(s) (required)
Use “…” for drop down of existing VLAN’s or LAN networks
Can also use CIDR format
Remote subnet(s) (optional)
Can use CIDR format
Security proposal settings
Configures Phase 1 and Phase 2 connection settings
Preset proposal options
Balanced
High Security
Custom
Phase 1 and Phase 2 settings
Encryption Algorithm
AES128
AES256
AES128-GCM-16
AES256-GCM-16
Integrity/PRF
SHA1
SHA2-256
SHA2-384
SHA2-512
Diffie-Hellman (DH) group
Values 14 to 24
SA lifetime (in seconds)
For deeper troubleshooting, review the site Logs → VPN Logs for additional details.
What type of IPSEC VPN does Bigleaf support?
Authentication via PSK, not via certificate or EAP.
DH is required.
IKEv2, not IKEv1.
NAT traversal mode is required.
Policy-based, not route-based.
Site-to-site VPN, not road-warrior or host-to-host.
Comments
0 comments
Article is closed for comments.