IPSec tunnel initiation from specific IP

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

IPSec tunnel initiation from specific IP

L0 Member

I need to have my IPSec tunnel initiate from a specific IP address on my outside interface. In the IKE gateway | local IP address field I can only select the outside interface IP/subnet and then the tunnel uses that default interface IP as the source. My outside interface has a whole subnet of IP addresses and I want to use a specific one not the default one assigned to the interface. I can't figure out how to get my IPSec tunnel to use the specific outside IP I want it to. The remote site is expecting the connection from this specific IP not the default interface IP.

1 accepted solution

Accepted Solutions

Cyber Elite
Cyber Elite

hi @Scott.Ainslie 

 

In network > Interfaces > loopback, create a new loopback interface and set it to the same zone as your outside interface, then assign it the IP you want to use for your IPSec connection

Next, go into your IKE gateway object and set the local interface to the loopback

commit the change and you're set

 

 

Tom Piens
PANgurus - Strata specialist; config reviews, policy optimization

View solution in original post

2 REPLIES 2

Cyber Elite
Cyber Elite

hi @Scott.Ainslie 

 

In network > Interfaces > loopback, create a new loopback interface and set it to the same zone as your outside interface, then assign it the IP you want to use for your IPSec connection

Next, go into your IKE gateway object and set the local interface to the loopback

commit the change and you're set

 

 

Tom Piens
PANgurus - Strata specialist; config reviews, policy optimization

Perfect, that worked.

Thanks

  • 1 accepted solution
  • 2116 Views
  • 2 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!