Configure a policy-based Site-to-Site VPN connection
This task enables you to add spokes to policy-based site-to-site VPN topologies using the device template.
You can configure a policy-based site-to-site VPN connection to add spokes to policy-based site-to-site VPN topologies using the device template.
Before you begin
-
Configure a minimum of one policy-based site-to-site VPN ().
-
Review Prerequisites for Configuring Device Templates and Guidelines and Limitations for Device Templates.
Follow these steps to configure a policy-based site-to-site VPN connection:
Procedure
Step 1 | Choose . |
Step 2 | Click the edit icon adjacent to the device template that you want to edit. |
Step 3 | Click the VPN tab. |
Step 4 | Click Add VPN Connection. |
Step 5 | Choose a policy-based site-to-site VPN topology from the VPN Topology drop-down list. The Add VPN Connection dialog box expands and you can configure these parameters: |
Step 6 | Click Save. |
What to do next
-
Before you apply a template to a device, to configure device-specific values for the protected networks, add these objects in .
-
Map the device interfaces to the template interfaces (model mapping).
-
Apply the template to a device.
