Replicating a VPN Gateway element from the Primary Engine to the Secondary Engine

Replicate the VPN Gateway element from primary Engine to secondary Engine to allow both engines to share the same VPN gateway configuration. This enables both engines to be used in existing policy-based VPNs.

For more details about the product and how to configure features, click Help or press F1.

Important: For information about using Engine High Availability (HA) with Policy-Based VPN in cloud environments, refer to Knowledge Base Article 000012534.

Steps

  1. Navigate to the Secondary Engine VPN settings:
    1. Select Engine.
    2. Browse to Engine > Engines.
    3. Right-click the engine, then select Edit <element type>.
    4. In the navigation pane on the left, select VPN.
  2. In the Additional Gateways section:
    1. Click Replicate. The Create New Replica Gateway dialog box is displayed.
    2. (Optional) Enter a name for the replica gateway in the Replica Gateway Name field.
      Note: If you do not specify a name, SMC automatically assigns the name Replica of <Linked Gateway Name> to the replica gateway.
    3. Click Select next to the Link Gateway field to select a Primary Engine gateway. The Select Element dialog box is displayed.
    4. Select the Primary Engine gateway element, then click Select.
    5. Click OK.
    Note: A replica VPN gateway of the Primary Engine is created for the Secondary Engine and added to the Additional Gateways section.
  3. Navigate to VPN > > <replica gateway element> > Endpoints.
  4. Do the following:
    1. Click the cell under the Local Address column, then select the local address of the Primary Engine.
    2. (Optional) Click the cell under the Name column to add a name for the linked endpoint for easier identification.
      Note: Do this only after you select the local address.
    3. Repeat steps a and b to link all endpoints.
    Note: The cells under the Linked Endpoint, Linked Contact Address, and Linked Phase-1 ID columns are automatically populated.
  5. Click the Save button.