![]() From the Interface drop-down list, select ethernet1/1.From the Version drop-down list, select IKEv2 only mode.In the General section, in the Name text box, type a name.Select Network > Network Profiles > IKE Gateways.In the AUTHENTICATION section, click Add and select sha256 (NIST rating 256-bit strength).From the DH GROUP drop-down list, select group14.In the ENCRYPTION section, click Add and select aes-256-cbc.From the IPSec Protocol drop-down list, select ESP.In the Name text box, type a name for the IPSec Crypto profile.Select Network > Network Profiles > IPSec Crypto.Keep the default values for all other settings.Ĭonfigure the Palo Alto IPSec Crypto Profile.In the Authentication section, click Add and select sha256.In the Encryption section, click Add and select aes-256-cbc.In the DH Group section, click Add and select group14.In the Name text box, type a name for the profile.Select Network > Network Profiles > IKE Crypto.From the Next Hop drop-down list, select None.Ĭonfigure the Palo Alto IKE Crypto Profile.From the Interface drop-down list, select tunnel.1.In the Destination text box, type the destination address. ![]()
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |