: Create Security Zone and Security Policy for GRE Tunnels Creation
Focus
Focus

Create Security Zone and Security Policy for GRE Tunnels Creation

Table of Contents

Create Security Zone and Security Policy for GRE Tunnels Creation

Create Security Zone and Security Policy for GRE Tunnels Creation
GRE tunnels created by the Zscaler Cloudblade must require a security policy (v1) or security policy set(v2) to be applied to the site for tunnel creation. The security policy and zone must be created and mapped to the site. The Cloudblade automatically places the servicelink GRE tunnel into the security zone. The CloudBlade typically creates two GRE tunnels, a Primary tunnel to Data center one and a Secondary GRE tunnel to Data center two.
If a policy or zone is removed later, the CloudBlade ignores all GRE operations performed on that site. This includes creating, updating or re-querying.
  1. Add a security zone.
    1. In Strata Cloud Manager, go to ManagePoliciesSecurity.
    2. Select Security Zones and add a Security Zone.
    3. On the next screen, enter a Name for the security zone and an optional description.
    4. Click Create.
  2. Add a security policy stack.
    1. Select ManagePoliciesSecurity and add a Stack.
    2. Enter a name for the Security stack, select the security policy zone created previously and Save the changes.
  3. Bind the security policy to the site.
    1. Select ManagePoliciesSecurity Stacks.
    2. From the ellipsis menu for a security policy, select Attach to Sites.
    3. Select the site and click Edit Selected.
    4. Review or edit your security policies and click Save.