This is used to define the Phase 1 settings of IPsec VPN (IKE version, encryption, hashing, authentication methods, DH group, lifetime, etc.). At first we have to click VPN and then IKE Policies then create the IKE Policies.
Used for Phase 2 settings of IPsec VPN (tunnel encryption for actual data traffic – AES, SHA, ESP, lifetimes, PFS, etc.).
General VPN control and service settings, enabling the VPN functionality on the device or interface.
Here, you create site-to-site VPN tunnels between your local gateway and a remote peer (e.g., branch office, data center, cloud). To establish VPN peering, we need to configure the client-end devices and provide the peering IP and router ID from the client side. Once the peering is established, the VPN connection will come up.

