IKE Policies
This is used to define the Phase 1 settings of IPsec VPN (IKE version, encryption, hashing, authentication methods, DH group, lifetime, etc.). At first we have to click VPN and then IKE Policies then create the IKE Policies.
IPsec Policies
Used for Phase 2 settings of IPsec VPN (tunnel encryption for actual data traffic – AES, SHA, ESP, lifetimes, PFS, etc.).
VPN Services
General VPN control and service settings, enabling the VPN functionality on the device or interface.
IPsec Site Connections
Here, you create site-to-site VPN tunnels between your local gateway and a remote peer (e.g., branch office, data center, cloud). To establish VPN peering, we need to configure the client-end devices and provide the peering IP and router ID from the client side. Once the peering is established, the VPN connection will come up.