
Enable Keep Alive to maintain the VPN connection and Windows Networking (NetBIOS) Broadcast to enable NetBIOS traffic over the VPN tunnel. Select IKE (Phase 1) and IPSec (Phase 2) parameters such as encryption algorithm, authentication method, key exchange protocol, and lifetime. Then, choose the Local and Remote Networks that you want to connect via the VPN tunnel. Create a new policy or edit an existing one by setting the IPSec Primary Gateway Name or Address, the Shared Secret, and the Authentication Method.

To configure the IPSec VPN mode and policy on your SonicWall device, log in to the management interface and go to VPN > Settings.

However, if you have dynamic IP addresses or need to connect to third-party VPN devices, aggressive mode may be necessary. Additionally, SonicWall firewalls support main mode and aggressive mode for IPSec VPN policies, with main mode being the preferred option for increased security and stability.

SonicWall firewalls support both tunnel mode and transport mode for IPSec VPNs, but tunnel mode is recommended for better security and compatibility with NAT.
