Athena NGFW (Next-Generation Firewall)

Athena NGFW (previously known as Network Secure) provides comprehensive protection for every network perimeter, ensuring the safety of your valuable assets, data, and users from emerging threats.
{{ $t('productDocDetail.guideClickSwitch') }}
{{ $t('productDocDetail.know') }}
{{ $t('productDocDetail.dontRemind') }}
8.0.107
{{sendMatomoQuery("Athena NGFW (Next-Generation Firewall)","Configuration Notes")}}

Configuration Notes

{{ $t('productDocDetail.updateTime') }}: 2026-04-29

Configuration Item (Athena NGFW)

Description

Traffic of Interest

- This is supported only in route mode.

- By default, IPv4 is enabled. This is equivalent to a case in which the local/peer IPv4 address is set to all zeros. We recommend that you select the destination-based route mode on the peer firewall.

- IPv6 is enabled. This is equivalent to a case in which the local/peer IPv6 address is set to all zeros. We recommend that you select the destination-based route mode on the peer firewall, and enable IPv6.

Peer Tunnel Interface

- This is supported only in route mode.

- If the referenced VPN tunnel interface is not shared with other IPsec VPN tunnels, we recommend that you leave this configuration item empty.

- You must enter the address of the peer tunnel interface if OSPF or BGP is used.

- When you need to specify the next hop for the static route or policy route, make sure that the next hop address is the same as the peer tunnel interface address of the IPsec VPN tunnel. Otherwise, business traffic may fail to be routed.