Create identical VPN Broker Domain elements for VPN Broker high availability
The VPN Broker Domain element defines the virtual network that contains the local and remote VPN Broker gateways, and the VPN Broker domain members. Create one identical VPN Broker Domain element in each NGFW Manager.
Steps
Example
Fields marked with an asterisk are mandatory.
Option | Definition |
---|---|
IPv4 Network or IPv6 Network | Enter the IP address and netmask of the virtual network that contains all of the members of the VPN Broker domain.
You must enter an IPv4 network, an IPv6 network, or both. Tip: We recommend that you make a note of the IP addresses for each VPN Broker Domain.
|
VPN Broker Gateway | Select the local VPN Broker Gateway that belongs to the VPN Broker domain. Type part of the name of an element or browse through the drop-down list to select an element. |
External VPN Broker Gateways | Select all External VPN Broker Gateways that belong to the VPN Broker domain. Type part of the name of an element or browse through the drop-down list to select an element. |
MAC Address Prefix | Enter a unique identifier for the VPN Broker Domain in MAC address format. The length must be three octets. The
first octet must be even. The address must be a unique unicast MAC address. Tip: We recommend that you make a note of the MAC Address
Prefix for each VPN Broker Domain.
|
Enabled | When selected, the VPN Broker Domain element is enabled. You can temporarily disable the element without deleting it. |