Cisco Secure Email Cloud Gateway - Site-to-Site VPN
Find the reference document
here
Customer Company Name
*
Email Contact(s)
*
Region
*
United States
Canada
London
Germany
Asia
Allocation
The allocation name can be found in the upper right corner of the web interface.
e.g. "hc1234-56" from esa1.hc1234-56.eu.iphmx.com
DC1 Appliance Subnet
*
RFC1918 subnet for appliance VPN interfaces.
Minimum /27.
Please avoid the following ranges:
192.168.96.0/19
192.168.128.0/17
10.0.0.0/12
10.30.40.0/20
DC2 Appliance Subnet
*
RFC1918 subnet for appliance VPN interfaces.
Minimum /27.
Must not overlap the DC1 subnet.
Please avoid the following ranges:
192.168.96.0/19
192.168.128.0/17
10.0.0.0/12
10.30.40.0/20
Customer Site VPN Peer IP(Customer router/fw)
*
If submitting multiple peer IPs, please provide additional details in the Comments field.
Customer Site Subnet(s)(interesting traffic)
*
If submitting multiple subnets along with multiple VPN peer IPs, please provide the peer/subnet interesting traffic pairings in the Comments field.
Please note:
the VPNs are policy based rather than route based.
VPN Peer NAT
*
No
Yes
Is the VPN peer behind NAT?
Identity Address*
Real IP address of peer behind NAT
Phase 1
*
IKEv1
IKEv2
Supported proposals are listed
here
Phase 2 Transform Set
*
esp-aes 256 esp-sha-hmac
esp-aes esp-sha-hmac
esp-aes 256 esp-sha384-hmac
Phase 2 PFS
*
No-Ignore
DH-5
DH-14
Comments
If you require tunnels to multiple sites, DPD, or need to specify more configuration detail than the previous fields allow, please provide those details here.
Captcha
*
Submit
Warning
To ignore warning please click Yes and Submit again.