> For the complete documentation index, see [llms.txt](https://docs.cloudeka.ai/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.cloudeka.ai/guidance-for-enterprise/deka-flexi/deka-vpn/ipsec-configuration/connect-ipsec.md).

# Connect IPsec

Here are the steps to create IPsec:

On the Network page, select the VPN tab, select Configuration in the More column.

<figure><img src="/files/diBsJTXdPQUgQy3pdkZl" alt=""><figcaption></figcaption></figure>

In the IPsec Tunnels section on the IPsec page, click the More button, and select Connect.

<figure><img src="/files/oX9Xf0Y6iEQNtJnmhgRQ" alt=""><figcaption></figcaption></figure>

A confirmation dialog will appear. Click **Confirm** to establish the IPsec tunnel connection.

<figure><img src="/files/MVMMlxIzjD52d5bdMLa1" alt=""><figcaption></figcaption></figure>

The notification **"IPsec connection established successfully"** appears and the Phase 1 and Phase 2 tables appear.

<figure><img src="/files/7a8JOjTcTmvKJia2DAJQ" alt=""><figcaption></figcaption></figure>

The following is an explanation of the tables in Phase 1 and Phase 2 in IPsec

Connect IPsec - Phase 1

<table><thead><tr><th width="264">Column</th><th>Information</th></tr></thead><tbody><tr><td>Status</td><td>Indicates whether the IPSec Phase 1 configuration is enabled or disabled.</td></tr><tr><td>Remote VPN</td><td>Displays the public IP address of the remote VPN gateway.</td></tr><tr><td>Pre Shared Key</td><td>Displays the pre-shared key used to authenticate the IPSec tunnel.</td></tr><tr><td>Connecting Status</td><td>Displays the current connection status of the IPSec tunnel, such as <strong>Connected</strong> or <strong>Disconnected</strong>.</td></tr><tr><td>Status Deployment</td><td>Indicates the deployment status of the IPSec Phase 1 configuration, such as <strong>Created</strong> or <strong>On Progress</strong>.</td></tr><tr><td>Action</td><td>Provides options to manage the IPSec Phase 1 configuration.</td></tr></tbody></table>

Connect IPsec - Phase 2

<table><thead><tr><th width="235">Column</th><th>Information</th></tr></thead><tbody><tr><td>ID</td><td>The unique identifier assigned to the IPSec Phase 2 configuration.</td></tr><tr><td>Mode</td><td>The IPSec operating mode used for the tunnel (for example, <strong>Tunnel</strong> mode).</td></tr><tr><td>Protocol</td><td>The IPSec protocol used to secure network traffic, such as <strong>ESP</strong>.</td></tr><tr><td>Status</td><td>Indicates whether the IPSec Phase 2 configuration is enabled or disabled.</td></tr><tr><td>Pfs Group</td><td>Displays the Perfect Forward Secrecy (PFS) group used for key exchange.</td></tr><tr><td>Lifetime</td><td>The duration (in seconds) for which the IPSec Phase 2 security association remains valid before being renewed.</td></tr><tr><td>Local IP Subnet</td><td>Displays the local subnet used for the IPSec tunnel.</td></tr><tr><td>Remote IP Subnet</td><td>Displays the remote subnet connected through the IPSec tunnel.</td></tr><tr><td>Description</td><td>Displays the description provided for the IPSec Phase 2 configuration.</td></tr><tr><td>Action</td><td>Provides options to manage the IPSec Phase 2 configuration.</td></tr></tbody></table>
