VPN Tunnel Interfaces

Virtual Tunnel Interface (VTI) is a virtual interface that is used for establishing a Route-Based VPN tunnel. Each peer Security Gateway has one VTI that connects to the VPN tunnel.

The VPN tunnel and its properties are configured by the VPN community that contains the two Security Gateways.

You must configure the VPN community and its member Security Gateways before you can create a VTI.

To learn more about Route Based VPN, see the R82 Site to Site VPN Administration Guide > Chapter Route Based VPN.

Note - The name of a VPN Tunnel interface in Gaia is "vpnt<VPN Tunnel ID>". For example, the name of a VPN Tunnel interface with a VPN Tunnel ID of 5 is "vpnt5".

Procedure:

  1. Create and configure the Security Gateways.

  2. Enable the IPsec VPN Software Blade in the objects of the applicable Security Gateways.

  3. Configure the VPN community in SmartConsole that includes the two peer Security Gateways.

  4. Make Route Based VPN the default option.

    Do this procedure one time for each.

  5. Configure the VTI.

    You can configure the VPN Tunnel Interfaces (VTI) in Gaia Portal or Gaia Clish.

  6. Configure Route Based VPN Rules.

  7. Install the policy and test.