Defining IPsec VTIs on SNS firewalls

This step is necessary for firewalls with network configurations that SMC does not manage. For more information, see the section Configure network interfaces.

Connect to every firewall in your topology and manually create IPsec VTIs in Network > Virtual interfaces using the .csv configuration file downloaded from SMC.

Refer to the Stormshield Network User Configuration Manual as well for more information on how to create IPsec VTIs.

If you want IPsec interfaces to be automatically created, the .csv file contains all the information required to write serverd commands.

In this case, the column #vti_interface_name must be entered manually. The value of the interface name is in the format ipsecXX, where XX is an increment that depends on the number of interfaces already on the firewall.

Now follow the last step.