: Create an IPsec Profile
Focus
Focus

Create an IPsec Profile

Table of Contents

Create an IPsec Profile

Learn how to create an IPsec profile for creating a tunnel between Prisma SD-WAN and Netskope security cloud.
Create an IPsec profile on the Prisma SD-WAN web interface.
  1. Navigate to
    Policies
    Stacked Policies
    IPsec Profiles
    .
  2. Click
    Add IPsec Profile
    .
  3. On the
    Info
    tab, enter a name and an optional description.
  4. Configure IKE settings.
    • Netskope Security Cloud supports
      IKEv2
      configuration only.
    • Netskope supports the following encryption ciphers: AES128-CBC,AES192-CBC, AES256-CBC.
    • Netskope supports the following hash algorithms: SHA256, SHA384,SHA512.
    • Netskope supports the following DH Groups: 14, 15, 16, 18.
    • DPD must be enabled.
  5. Click
    Next
    .
  6. Configure
    ESP Group
    settings.
    • Netskope supports the following encryption ciphers: AES128-CBC,AES256-CBC, AES128-GCM, AES192-GCM, AES256-GCM, Null.
    • Netskope supports the following hash algorithms: SHA256, SHA384,SHA512.
    • Netskope supports the following DH Groups:14, 15, 16, 18.
  7. Click
    Next
    .
  8. On the
    Authentication
    tab, select
    None
    for
    Type
    .
    This is because authentication settings will be configured locally on the device using an IPsecauthentication override.
  9. Click
    Next
    , review the settings of the profile and then click
    Save & Exit
    .

Recommended For You