Creating reverse tunnels on the Federation host

2026-07-28Last updated

To open a reverse tunnel between a remote site and the Federation™ host, you must first create a reverse tunnel for the remote site on the Federation host.

What you should know

  • By default, all reverse tunnels have encryption enabled. Video is encrypted while in transit from the remote site to the Federation host.
  • Fusion stream encrypted video cannot be played back in Security Center SaaS or in the SC SaaS Operation mobile application.

Procedure

  1. In Genetec™ Configuration desktop, sign in to the Federation host system.
  2. Open the System task and click Roles > Reverse Tunnel Server > Properties .
  3. At the bottom of the page, click Add an item ().
  4. In the Name field, enter a unique name to identify the remote site you want to federate and click Add.
    A reverse tunnel is created with the status Not registered.
  5. Click Apply.
  6. Get the keyfile by doing one of the following:
    • If your workstation can access the remote site, click Copy keyfile to clipboard ().
    • If your workstation cannot access the remote site, click Save keyfile to disk () and specify the file location.

      A file named <SiteName>.keyfile is saved to the folder that you select.

    System task in Genetec Configuration desktop showing the Reverse Tunnel Server role with the Save keyfile to disk highlighted.
  7. Click Apply.

After you finish

Open the tunnel from the remote site using the tunnel keyfile.