I am planning create IPsec tunnel between my checkpoint firewall and cisco firewall.
My firewall IP is 10.130.40.50. and I have other interface configured with subnet as 192.168.252.0/24 and 192.168.240.0/24.
in the VPN domain on firewall , If create the encryption domain as 10.130.40.0/24 and if I have the rules to allow the traffic from 192.168.252.0 and 192.168.240.0 to the remote networks behind the cisco firewall, will the traffic encrypted?
or should I include 192.168.252.0/24 and 192.168.240.0/24 also in the encryption domain?