IPsec Direct connection details

For IPsec connections, configuration information is displayed for each tunnel. Use these details to configure your edge device for IPsec VPN tunneling connectivity.Connections are created by Forcepoint. Some items can be edited by administrators.

Table 1.
Category Option Description Editable?
Status The current connectivity status of the tunnel. -
Name A descriptive name for the connection. Yes
Your router details Pre-shared key The pre-shared key used for tunnel authentication. Yes
IKE ID type The device IKE ID is used to identify traffic from the tunnel. Use either a fully qualified domain name (FQDN) for your device, or its public egress IP address. You must configure this value on your edge device as the initiator IKE ID for the tunnel.
  • FQDN: a fully qualified hostname for the edge device. (Required for devices with dynamic IP addresses.)
  • Public IP address: the public egress IP address of the edge device. Traffic from your tunnel must originate from this address. Required for devices that do not support hostnames as the IKE ID. If using this option, the IP address of your device must be static.
Yes
IPsec connection settings Region The geographical region of the Forcepoint gateway. (Available in a future release.) -
Destination FQDN The fully-qualified destination DNS hostname for the selected region. -
Forcepoint IKE ID The responder IKE identity of the Forcepoint gateway. -
Tunnel destination IP address The destination (data center) IP address of the tunnel. -
Monitoring IP address The monitoring IP address can be pinged via the tunnel to monitor the status of the tunnel connection. -

Click the panel under Connections to edit settings for the connection.