


CHECKPOINT VPN CLIENT HOW TO
For information about how to monitor VPN status in WatchGuard Cloud, see Monitor VPNs on Fireboxes and FireClusters. Test the VPNĪfter you complete the VPN configuration on both endpoints, try to send traffic through the tunnel and then look at the VPN status in WatchGuard Cloud and on the remote VPN endpoint.

Configure all other VPN settings as described above.įor detailed steps to configure a BOVPN virtual interface on a locally-managed Firebox, see Configure a BOVPN Virtual Interface.In the Phase 1 settings, change the Version to IKEv2.Set the Remote Endpoint Type to Cloud VPN or Third-Party Gateway.Add the BOVPN as a BOVPN virtual interface.If the remote VPN endpoint is a locally-managed Firebox, to configure the VPN on the locally-managed Firebox, you must: Network resources - Configure the remote endpoint to route traffic through the VPN to the Firebox network resources.Phase 2 settings - Configure the remote endpoint to use ESP (Encapsulating Security Payload), and specify the authentication, encryption, and key expiration settings specified in the cloud-managed Firebox BOVPN configuration.Phase 1 settings - Configure the remote endpoint to use IKEv2, and specify the authentication, encryption, SA Life, and key expiration settings specified in the cloud-managed Firebox BOVPN settings.Virtual IP addresses - The virtual IP addresses specified in the cloud-managed Firebox BOVPN settings.Pre-shared key - Specify the pre-shared key configured in the cloud-managed Firebox BOVPN settings.Remote gateway - Specify the external domain name or IP address of the cloud-managed Firebox.To complete the VPN configuration, on the remote VPN endpoint, configure the VPN as a virtual interface or route-based VPN with these settings: Configure the BOVPN on the Locally-Managed or Third-Party Endpoint For more information, see View the BOVPN Guide. You can use this as a reference when you configure the remote endpoint. For more information, see Configure a BOVPN to a Locally-Managed Firebox or Third-Party VPN Endpoint.Īfter you configure the BOVPN, you can view the BOVPN Guide to see a summary of BOVPN settings on the cloud-managed device. To configure the BOVPN on the cloud-managed Firebox, from WatchGuard Cloud, add the BOVPN to the Firebox. A cloud-managed Firebox in another WatchGuard Cloud accountĬonfigure the BOVPN on the Cloud-Managed Firebox.A cloud-based virtual network, such as Microsoft Azure, Amazon AWS, and Cisco VTI endpoints.A locally-managed Firebox BOVPN virtual interface.You can configure a VPN from a cloud-managed Firebox to any Firebox or any third-party VPN endpoint that supports IKEv2 VPNs with compatible settings. Configure Remote VPN Endpoint Settings on a Locally-Managed Firebox or Third-Party VPN EndpointĬloud-managed Fireboxes This topic applies to Fireboxes you configure in WatchGuard Cloud.
