1
>> Configure the Firebox
>> On the Firebox, configure a BOVPN connection.
>> Log in to Fireware Web UI.
>> Select VPN > Branch Office VPN.
The Branch Office VPN configuration page appears.
>> In the Gateways section, click Add.
>> In the Gateway Name text box, type a name to identify this BOVPN gateway.
>> From the Address Family drop-down list, select IPV4 Addresses.
>> In the Credential Method section, select Use Pre-Shared Key.
>> In the adjacent text box, type the pre-shared key.
>> Keep the default String-Based setting.
>> In the Gateway Endpoint section, click Add.
The Gateway Endpoint Settings dialog box opens.
>> From the External Interface drop-down list, select External.
>> From the Interface IP Address drop-down list, select Primary Interface IPv4 Address.
The Primary Interface IP Address is the primary IP address you configured on the selected external interface.
>> Select By IP Address.
>> In adjacent text box, type the primary IP address of the External Firebox interface.
>> Select the Remote Gateway tab.
>> Select Static IP Address.
>> In the adjacent text box, type the External IP address of your Google Cloud connection.
>> Select By IP Address.
>> In the adjacent text box, type the External IP address of your Google Cloud connection.
>> Keep the default settings for all other options.
>> Click OK.
>> In the Gateway Endpoint section, select the Start Phase 1 tunnel when Firebox starts check box.
>> Select the Phase 1 Settings tab.
>> From the Version drop-down list, select IKEv2.
>> Keep all other Phase 1 settings as the default values.
>> Click Save.
>> In the Tunnels section, click Add.
>> From the Gateway drop-down list, select the gateway that you configured.
>> In the Addresses section, click Add.
>> In the Local IP section, from the Choose Type drop-down list, select Network IPv4.
>> In the Network IP text box, type the local IP segment. This the local network protected by the Firebox.
>> In the Remote IP section, from the Choose Type drop-down list, select Network IPv4.
>> In the Network IP text box, type the remote IP segment. This the local network protected by Google Cloud.
>> Click OK.
>>Keep Phase 2 Settings as the default values.
Click Save.