VPN Tunnel
Create VPN Tunnel
In the Samsung Cloud Platform Console, you can configure IPSec Tunning with remote sites in the VPN service.
To create a VPN tunnel, follow these steps.
Click the All Services > Networking > VPN menu. Navigate to the VPN Service Home page.
On the Service Home page, click the Create VPN Tunnel button. You will be taken to the Create VPN Tunnel page.
On the VPN Tunnel creation page, enter the information required to create the service, and select detailed options.
Enter the required information in the Service Information Input area.
Category Required statusDetailed description VPN Tunnel name Required Enter VPN Tunnel name - Enter using English letters and numbers, within 3 - 20 characters
VPC Gateway name Required Select the VPN Gateway to connect VPC name Basic Automatically input VPC information connected to the VPN Gateway Public IP Basic Automatic entry of IP information for communicating with remote sites from the VPN Gateway Peer VPN GW IP Required Enter the IP information of the remote VPN - Example: 192.168.10.0
Romote Subnet(CIDR) Required Enter the subnet address of the remote site to connect - After entering the IP address, click the Add button; you can add up to 10 entries
- Example: 20.0.0.0/24
Pre-shared Key Required Enter the shared key (PSK) to be used for IKE mutual authentication between VPN gateways - Enter between 8 and 64 characters
- It is recommended to use a 32-character alphanumeric string
Explanation Select User additional description Table. VPN Tunnel Service Information Input ItemsEnter or select the required information in the Tunnel Settings area.
Category RequiredDetailed description IKE Settings > IKE Version Required Select IKE version IKE Settings > Algorithm Settings Required Select Encryption Algorithm and Digest Algorithm, then click the Add button. IKE configuration > Diffie-Hellman Required Diffie-Hellman Group Selection IKE configuration > SA Lifetime Required Enter the VPN session (Security Association) lifetime IPSec Settings > Algorithm Settings Required Select Encryption Algorithm and Digest Algorithm, then click the Add button. IPSec Settings > Perfect Forward Secrecy (PFS) Required Select whether to use the PFS group IPSec Settings > Diffie-Hellman Required Diffie-Hellman group selection IPSec Settings > SA Lifetime Required Enter the VPN session (Security Association) lifetime Table. VPN Tunnel configuration itemsEnter the required information in the DPD additional settings area.
Category RequiredDetailed description DPD additional settings > DPD probe interval Required Enter DPD test interval - Enter a value between 1 and 3,600 seconds
Table. VPN Tunnel DPD Additional Settings Input ItemsIn the Additional Information Input area, enter or select the required information.
Category RequiredDetailed description tag Select Add Tag - Up to 50 can be added per resource
- After clicking the Add Tag button, enter or select Key and Value values
Table. VPN Tunnel additional information input fields
Summary Check the detailed information and estimated billing amount generated in the panel, and click the Create button.
- When creation is complete, check the created resource on the VPN Tunnel List page.
Check VPN Tunnel detailed information
VPN Tunnel service allows you to view and edit the full resource list and detailed information. VPN Tunnel Details page consists of Details, Tags, Activity Log tabs.
To view detailed VPN information, follow these steps.
- Click the All Services > Networking > VPN menu. Navigate to the VPN Service Home page.
- On the Service Home page, click the Create VPN Tunnel button. You will be taken to the VPN Tunnel List page.
- On the VPN Tunnel List page, click the resource to view detailed information. You will be taken to the VPN Tunnel Details page.
- VPN Tunnel Details page displays status information and additional feature information, and consists of Details, Tags, Activity Log tabs.
| Category | Detailed description |
|---|---|
| Status | Current status
|
| Delete VPN Tunnel | VPN Tunnel delete button |
Detailed Information
On the VPN Tunnel List page, you can view detailed information of the selected resource and, if necessary, edit the information.
| Category | Detailed description |
|---|---|
| Service | Service name |
| Resource Type | Resource Type |
| SRN | Unique resource ID in Samsung Cloud Platform |
| Resource name | VPN resource name |
| Resource ID | Unique resource ID in the service |
| constructor | User who created the service |
| Creation date | Service creation timestamp |
| Editor | User who edited the service information |
| Modification date | Date and time the service information was modified |
| VPN Tunnel name | VPN Tunnel name |
| VPN Gateway name | VPN Gateway name |
| Public IP | Public IP information |
| Peer VPN GW IP | Peer VPN GW Information
|
| Remote Subnet (CIDR) | Remote Sunet information
|
| Pre-shared Key | Pre-shared Key information
|
| status | Current service connection status |
| description | VPN Tunnel additional description
|
| IKE | Click the Edit button to bulk edit configuration information. |
| IKE Version | IKE Version information |
| Encryption Algorithm/Digest Algorithm | Algorithm information |
| Diffie-Hellman | Diffie-Hellman information |
| SA LifeTime | SA LifeTime information |
| IPSec | Click the Edit button to bulk edit the configuration information. |
| Encryption Algorithm/Digest Algorithm | Algorithm information |
| Diffie-Hellman | Diffie-Hellman information |
| SA LifeTime | SA LifeTime information |
| Perfect Forward Secrecy(PFS) | PFS configuration information |
| DPD | DPD probe interval information
|
tag
On the VPN Tunnel List page, you can view the tag information of the selected resource, and you can add, modify, or delete it.
| Category | Detailed description |
|---|---|
| Tag list | Tag list
|
Job History
VPN Tunnel List page allows you to view the operation history of the selected resource.
| Category | Detailed description |
|---|---|
| Task History List | Resource Change History
|
Delete VPN Tunnel
You can reduce operational costs by deleting unused VPC tunnels. However, deleting a tunnel may cause the running service to stop immediately, so you should carefully consider the impact of service interruption before proceeding with the deletion.
To cancel the VPN, follow these steps.
- Click the All Services > Networking > VPN menu. You will be taken to the VPN Service Home page.
- On the Service Home page, click the Create VPN Tunnel button. You will be taken to the VPN Tunnel List page.
- On the VPN Tunnel List page, click the resource to view detailed information. You will be taken to the VPN Tunnel Details page.
- VPN Tunnel Delete Click the button.
- After termination is complete, check the VPN Tunnel List page to see if the resource has been deleted.