Used to define Phase 1 settings of IPsec VPN (IKE version, encryption, hashing, authentication methods, DH group, lifetime, etc.). At first we have to click VPN and then IKE Policies then create the IKE Policies.
Used for Phase 2 settings of IPsec VPN (tunnel encryption for actual data traffic – AES, SHA, ESP, lifetimes, PFS, etc.).
General VPN control and service settings, enabling the VPN functionality on the device or interface.
Here, you create site-to-site VPN tunnels between your local gateway and a remote peer (e.g., branch office, data center, cloud).

