If the Firewall-C IP address is unknown, you can use *ANYIP as the identifier for the remote key server.
Enter topsecretstuff in the Pre-shared key field
Click Next to go to the Remote Data Endpoint page.
Select IP version 4 subnet from the Identifier type field.
Enter 10.8.11.0 in the Identifier field.
Enter 255.255.255.0 in the Subnet mask field.
Click Next to go to the Data Services page.
Accept the default values, and then click Next to go to the Data Policy page.
Select Create a new policy and then select Balanced security and performance.
Click Next to go to the Applicable Interfaces page.
Select TRLINE from the Line table.
Click Next to go to the Summary page.
Review the objects that the wizard will create to ensure they are correct.
Click Finish to complete the configuration.
When the Activate Policy Filters dialog box appears, select Yes, activate the generated policy filters then select Permit all other traffic.
Click OK to complete the configuration.
Parent topic:
Scenario: Firewall Friendly VPN