You can reconfigure and tune existing VPNs.
This guide provides the information you need to work with your Forcepoint product.
The SMC as a Service provides centralized access for configuring, managing, logging, and monitoring NGFWs that secure network connectivity and control business operations.
A VPN extends a secured private network over public networks by encrypting connections so that they can be transported over insecure links without compromising confidential data.
A digital certificate is a proof of identity. SMCaaS supports using certificates for authenticating gateways and the Forcepoint VPN Client.
You can add or remove tunnels in a VPN.
To create connectivity to different gateways, add new gateways to route-based VPN tunnels and policy-based VPNs.
If the IP address of a device that you use as a VPN gateway changes, change the gateway IP addresses in NPNs where the gateways are used.
If you want to give access to hosts with IP addresses that are not already configured for your policy-based VPN, you must follow several general steps.
You can force all traffic from VPN clients or clients in protected networks to be routed through a policy-based VPN.
In policy-based VPNs, you can redirect traffic from one VPN tunnel to another VPN tunnel through a hub gateway.
As a security precaution, we recommend that you periodically change the pre-shared key.
The Gateway Settings element defines performance-related VPN options for the Engines.