Go to the table of contents Go to the previous page Go to the next page View or print as PDF
Managing Network Devices > Managing edge devices > Adding or editing edge device information
Adding or editing edge device information
Use the Device Management > Add Edge Device or Edit Edge Device options to add a device, or change the configuration settings for an existing device.
When you add a device, you are asked to specify the tunneling type. You can create devices that connect via IPsec Advanced or GRE tunneling. See:
*
*
To add a new edge device for IPsec Advanced tunneling
1.
Click Add, and select Add Edge Device.
2.
3.
Under General, enter or update your device Name.
4.
Select the Device Type from the drop-down list.
5.
Provide a device Description (up to 512 alphanumeric characters).
6.
Under Device Authentication:
a.
Select the IKE Version. The IKEv2 protocol is selected by default.
b.
Select an IKE identity. The valid options are based on the IKE Version selected.
If IKEv1 was selected as the IKE Version, the only option is Public IP address.
c.
d.
Select a Pre-shared key option. Define whether to use your own key (keys must be a minimum of 8 characters long) or generate a new key from the cloud service.
e.
If you select Use your own key, enter the key string. If you select Auto generated new key, the new key is displayed.
Click the encryption settings link to view supported IKE and IPsec settings for the device.
7.
Under Points of Presence (PoPs), use the drop-down lists provided to select the two most appropriate points of presence (data center or local PoP) for your location.
Optionally, click on the entry field and begin entering text to filter the list of PoPs to those that contain that search sub-string. The list is reduced as each character is entered. Make your selection from the filtered list. You can also use the up and down arrow keys on your keyboard to highlight your selection. Press Enter to select it. Press Esc to remove the filter and restore the previous selection.
Once the Primary selection is made, the list for the Secondary selection is limited to those PoPs not included in the Data Center of the primary selection.
Note that, if the two selections reside in the same physical location. redundancy is not supported. To avoid this, a message appears with instructions to select a difference secondary location.
If you change selections, make sure your device configuration is correct.
 
Important 
8.
Under Policy Assignment, select the Default policy to apply to traffic managed by this device. The Default policy is pre-selected but can be changed.
9.
a.
b.
c.
d.
e.
Click Add.
Repeat these steps for each internal network managed by the device to which you want to assign a specific policy.
Note that networks (IP address ranges and subnets) may not overlap, and you can assign only one policy to each network.
10.
To add a new edge device for GRE tunneling
1.
Click Add , and select Add Edge Device.
2.
3.
Under General, enter or update your device Name.
4.
Select the Device Type from the drop-down list.
5.
Provide a device Description (up to 512 alphanumeric characters).
6.
Add the Public IP address for the device. This is the external egress IP for the device.
7.
Under Points of Presence (PoPs), use the drop-down lists provided to select the two most appropriate points of presence (data center or local PoP) for your location. Once the Primary selection is made, the list for the Secondary selection is limited to those PoPs not included in the Data Center of the primary selection.
Note that, if the two selections reside in the same physical location. redundancy is not supported. To avoid this, a message appears with instructions to select a difference secondary location.
If you change selections, make sure your device configuration is correct.
 
Important 
For each connection, the destination (PoP) inner tunnel address and source (edge device) inner tunnel IP address are provided when the data is saved. You will need these addresses to configure the tunnel on your device.
8.
Under Policy Assignment, select the Default policy to apply to traffic managed by this device. The Default policy is pre-selected but can be changed.
9.
a.
b.
c.
d.
e.
Click Add.
Repeat these steps for each internal network managed by the device to which you want to assign a specific policy.
Note that networks (IP address ranges and subnets) may not overlap, and you can assign only one policy to each network.
10.

Go to the table of contents Go to the previous page Go to the next page View or print as PDF
Managing Network Devices > Managing edge devices > Adding or editing edge device information
Copyright 2024 Forcepoint. All rights reserved.