Name | Enter a name to identify the VPN in Phase 2 configurations, security policies and the VPN monitor. |
Remote Gateway | The remote gateway is the other end of the VPN tunnel. There are three options: Static IP Address — Enter the spoke’s public IP Address. You will need to create a Phase 1 configuration for each spoke. Either the hub or the spoke can establish the VPN connection. Dialup User — No additional information is needed. The hub accepts connections from peers with appropriate encryption and authentication settings. Only one Phase 1 configuration is needed for multiple dialup spokes. Only the spoke can establish the VPN tunnel. Dynamic DNS — If the spoke subscribes to a dynamic DNS service, enter the spoke’s Dynamic DNS domain name. Either the hub or the spoke can establish the VPN connection. For more information, see “Dynamic DNS configuration”. |
Local Interface | Select the FortiGate interface that connects to the remote gateway. This is usually the FortiGate unit’s public interface. |
Name | Enter a name to identify this spoke Phase 2 configuration. |
Phase 1 | Select the name of the Phase 1 configuration that you defined for this spoke. |