IPsec gateways
Connect whole networks — offices, data centres, and clouds — over self-managed, standards-based IPsec tunnels.
Networks, not devices
Where the consumer VPN protects one device at a time, an IPsec gateway connects a network. Deploy a gateway at each location and every machine behind it is reachable across the encrypted tunnel — no per-device app, no per-user action. This is how you link an office to a data centre, or an on-prem network to a cloud VPC.
What this section covers
- Overview — the architecture and where gateways fit.
- Create a gateway — provision your first endpoint.
- Site-to-site tunnels — join two networks.
- CLI reference — the
vpngeek gatewayandvpngeek tunnelcommands.
Who manages it
You do. VPNGeek gives you standards-based IKEv2 with every knob exposed — crypto proposals, subnets, routing, PFS groups, dead-peer detection — so you can reason about the whole path rather than trust a black box. There are no per-tunnel fees.
