Define a site-to-site VPN
The Policy-Based VPN editing view has three tabs. The gateway selection on the Site-to-Site VPN tab determines the following:
- Which gateways are included in the VPN.
- Which gateways form tunnels with each other.
- Which gateways contact each other through a hub gateway instead of contacting each other directly.
You define general VPN topology by classifying gateways as Central Gateways or Satellite Gateways. This classification defines which tunnels are generated on the Tunnels tab, and which gateways can be selected for mobile VPN access on the Mobile VPN tab.
IPv4 Access rules control which connections use the VPN tunnels. Always check the Access rules after you add or remove tunnels.
Note: Each endpoint-to-endpoint tunnel can only exist in one active VPN. If you use the same two gateway elements in more than one VPN, make sure that the topology does not create
duplicate tunnels. You can also disable any duplicates of existing tunnels on the Tunnels tab.
For more details about the product and how to configure features, click Help or
press F1.