Connection via VPN IPsec
Requirements for the VPN end device
When creating a connection to oneclick™, please note that a connection to an external firewall vendor/manufacturer is established here. We do not use a specific vendor, but regulate VPN connections via an IPsec technology.
- A site-to-site connection must be possible.
- The connection must not be triggered by the terminal device (response/passive mode). The connection is initiated by oneclick™.
- NAT traversal (NAT-T) must be enabled.
With oneclick™, VPN IPsec site-to-site connections can be connected via an automatic mode or an extensive manual mode. The following parameters can be edited in manual mode:
- General information
- oneclick™ Peer ID | Your Peer ID
- IKE data
- Key Exchange Version 1 or 2
- MTU
- Pre Shard Key
- Phase 1
- Lifetime in seconds
- Encryption algorithm
- Key-lenght
- Hash
- Diffie Hellman Group
- Phase 2
- Lifetime in seconds
- Encryption algorithm
- Key-lenght
- Hash
- Diffie Hellman Group with active Perfect Forward Secrecy (PFS)
If a parameter is not available, we can enter it for you in the background.