EU Radio Frequency Directive (RED) Cybersecurity Instruction Reference Guide

IPSec VPN

Use these steps only if applicable to your environment.

This feature is typically used for encrypted site-to-site connectivity and resource sharing. However, to minimize the risk of unauthorized remote access, it’s still crucial to restrict access to essential networks, ports, protocols, and services.

  1. Configure strong IPSec VPN security policies based on specific routes and strong ciphers.
    1. Navigate to Network > IPSec VPN > Rules and Settings.
    2. Select +Add near the top of the screen.

    3. Configure the policy under General, Proposals, and Advanced tabs.

      Tunnel Interfaces offer more ease and flexibility in policy configuration and firewall access rule integration.

  2. Secure the tunnel interfaces with firewall access rules to limit hosts, networks, ports, and protocols:
    1. Navigate to Policy > Rules and Policies > Access Rules.

    2. Create access rules based on VPN zones or interfaces, limiting traffic to/from specific hosts, networks, ports, and protocols.

    3. Configure a strong shared secret key.