Creating a VPN Site
Configure and create a VPN site by defining remote site settings, encryption parameters, and advanced VPN options.
Creating a VPN Site
- Go to the VPN tab.
-
Select VPN Sites.

- Create a new VPN site.
-
On the Remote Site tab:
-
In the Site name field, enter a name for the VPN site. For example, SASE.
-
From the Connection type list, select Host name or IP address.
-
In the IP address field, enter the IP address of the SASE site.
-
In the Authentication section, select Pre-shared secret and enter the same secret Password as in SASE.

-
-
In the Remote Site Encryption Domain section, select Encrypt according to routing table.

-
Go to the Encryption tab and configure parameters according to the SASE encryption parameters.

-
Go to the Advanced tab and configure these parameters:
-
Clear the Enable Permanent VPN tunnels checkbox.
-
Clear the Remote getaway is a Check Point Security Gateway checkbox.

-
- In the second part of the Advanced tab, in the Encryption Method section, select IKEv2.
- Select the option to configure the identities.
- In the Peer ID field, enter the VPN site name. The Peer ID must match the VPN site name and the VTI peer name. In this example, enter SASE.
-
In the Gateway ID field, keep the global identifier generated when you create the VPN site on the Spark appliance.
