Configure a Policy-Based Site-to-Site VPN Connection
You can configure a policy-based site-to-site VPN connection to add spokes to policy-based site-to-site VPN topologies using the device template.
Before you begin
-
Configure a minimum of one policy-based site-to-site VPN (Devices > VPN > Site To Site).
-
Review Prerequisites for Configuring Device Templates and Guidelines and Limitations for Device Templates.
Procedure
Step 1 | Choose Devices > Template Management. |
Step 2 | Click the edit icon adjacent to the device template that you want to edit. |
Step 3 | Click the VPN tab. |
Step 4 | Click Add VPN Connection. |
Step 5 | Choose a policy-based site-to-site VPN topology from the VPN Topology drop-down list. The Add VPN Connection dialog box expands and you can configure the following parameters: |
Step 6 | Click Save. |
What to do next
-
Note that before you apply a template to a device, to configure device-specific values for the protected networks, add these objects in Template Settings > Template Parameters > Add Network Objects Overrides.
-
Map the device interfaces to the template interfaces (Model Mapping).
-
Apply the template to a device.