This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

IPSEC Site2Site with FQDN as ID

We have a large number of site2site connections in our current configuration: Here we got an old smoothwall and at the client side we got Netgears VPN firewalls. We have about 25 of them so changing configurations on them would take a lot of time.

Now I'm configuring a ASG120 to replace the Smoothwall. However, when I add a remote gateway it says:

VPN ID Type: IP Address
VPN ID (optional): 

Does this mean that you can only use IP Addresses as ID? Most of our remote gateways are on DSL lines so we have used FQDN (via DynDNS) as ID before.

I've seen this question asked before on this forum, but I've found no real answer. To minimize downtime I want to get most things working before I switch gateways.


This thread was automatically locked due to age.
Parents
  • With a PSK, that's the only option.  We normally don't recommend using a PSK for a S2S VPN as it's not as secure as using a certificate.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • With a PSK, that's the only option.  We normally don't recommend using a PSK for a S2S VPN as it's not as secure as using a certificate.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
No Data