Skip to content
Closed
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
Original file line number Diff line number Diff line change
Expand Up @@ -122,7 +122,7 @@ To create a **VPN Gateway Connection**:
1. Go to **Virtual WAN** > **Hubs** > **Your vHub** > **Connectivity** > **VPN (Site to site)** and remove the default filter **Hub association: Connected** to display the **VPN Site** created above.
2. Check the box next to your VPN Site and select **Connect VPN sites**.

Choose the following settings when creating your VPN Connection:
When setting up your VPN connection, consider selecting the following configurations. However, please note that other configuration parameters are also technically feasible, as documented [here](https://learn.microsoft.com/en-us/azure/virtual-wan/virtual-wan-ipsec).
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The trick here would be finding sets of configuration options that play nicely with Cloudflare Magic WAN IPsec tunnels. Last time I checked there were definitely some ciphers in Azure's list that Cloudflare does not support. Following up offline since I am not the expert on exactly which options we support, but I can point you to someone who is.


1. **PSK**: Provide the PSK generated by Cloudflare for your Magic WAN Tunnels.
2. **Protocol**: *IKEv2*
Expand All @@ -141,4 +141,4 @@ Choose the following settings when creating your VPN Connection:
6. **Connection mode**: **Initiator Only**
7. **Configure traffic selector?**: **Disabled**

4. Select **Connect**.
4. Select **Connect**.