Edit a SASE Tunnel

Use this procedure to modify an existing SASE tunnel:

Procedure


Step 1

Choose Secure Connections > Network Connections > Site to Site VPN.

Step 2

Select the tunnel you want to modify.

Step 3

In the Actions pane, select Edit.

Step 4

Edit these fields of the SASE tunnel:

  • Name: Change the name of the SASE tunnel as it appears in Security Cloud Control and the Umbrella dashboard.

  • Umbrella Peer's Datacenter: Select a new headend data center from the drop-down list.

  • ASA Peer's Public Facing Interface: Select a new IPv4 address from the drop-down list.

  • ASA Peer's LAN Interfaces: Select one or more new LAN interfaces from the drop-down list.

  • ASA Virtual Tunnel Interface (VTI) Address: Manually edit the VTI.

  • Passphrase: Modify the passphrase for the tunnel.

  • Confirm Passphrase: Manually modify this entry to match the passphrase and confirm the new value.

Step 5

(Optional) The Deploy changes to ASA immediately toggle at the bottom of the pop-up window is enabled by default. When enabled, the SASE tunnel configuration is deployed immediately to the ASA peer selected in the tunnel configuration. To stage changes and deploy later, manually set the option to disable. If you choose to stage changes and deploy later, the status of the ASA peer in the Security Devices page appears as Deploy Pending.

Step 6

Select Save Updates.