Create an External VPN Gateway element
You must create an External VPN Gateway element to represent third-party VPN devices or Forcepoint NGFW devices managed by a different Management Server in VPNs.
For more details about the product and how to configure features, click Help or press F1.
Steps
- Select Configuration, then browse to SD-WAN.
- Right-click Gateways, then select New External VPN Gateway.
- Configure the settings.
- Click OK.
External VPN Gateway Properties dialog box
Use this dialog box to define the properties of an External VPN Gateway element.
Option | Definition |
---|---|
General tab | |
Name | Specifies the unique name of the element. |
Gateway Profile | Shows the selected gateway profile. |
Select | Opens the Select Element dialog box. |
Category | Shows the assigned category. |
Select | Opens the Category Selection dialog box. |
Comment | An optional comment for your own reference. |
Option | Definition |
---|---|
Endpoints tab | |
Search | Opens a search field. Enter a search parameter to locate an endpoint. Clicking X removes the search field. |
New | External Endpoint — Adds an external endpoint IP address. Opens the External Endpoint Properties dialog box. |
Tools |
|
Add | Opens the External Endpoint Properties dialog box. |
Edit | Opens the External Endpoint Properties dialog box for the selected endpoint. |
Remove | Removes the selected endpoint from the list. |
Option | Definition |
---|---|
Sites tab | |
Search | Opens a search field for the selected element list. |
Up (Backspace) | Navigates up one level in the navigation hierarchy. Not available at the top level of the navigation hierarchy. |
Tools |
|
Add | Adds the selected element to the content list. |
Remove | Removes the selected element from the content list. |
Content | Shows the selected elements. |
Option | Definition |
---|---|
Trusted CAs tab | |
Trust All | The gateway accepts any valid CA that is configured, unless restricted in the VPN element. |
Trust only selected | Only selected CAs are accepted. Select the CAs that the Gateway must trust. |