NSX-T : Create a VPN Ipsec

1. Login to NSX Manager and Goto “Networking” Menu on Top.

2. Select “VPN” from “Network Services” from left side sub Menu.

3. Click on “ADD SERVICE” from “VPN Services” Menu on the right side.

4. Click on “IPSec” option.

5. Provide Name in IPSec field.

6. From the Tier-0/Tier-1 Gateway drop-down menu, select the Tier-0 or Tier-1 gateway to associate with this IPSec VPN service.

7. Keep other options to Default.

8. Click Global Bypass Rules if you want to allow data packets to be exchanged between the specified local and remote IP addresses without any IPSec protection. In the Local Networks and Remote Networks text boxes, enter the list of local and remote subnets between which the bypass rules are applied.

9. Click SAVE.

10. New IPSec VPN service will be created successfully, now a dialog box will ask whether you want to continue with the rest of the IPSec VPN configuration. If you click Yes, you are taken back to the Add IPSec VPN Service panel. The Sessions link is now enabled and you can click it to add an IPSec VPN session.

11. Next steps are to configure IPSec sessions and Local Endpoints.