VMware Aria Operations for Networks supports policy-based VPN in VMware Cloud on AWS, NSX-T, and NSX-V. The following scenarios are supported for the policy-based VPN:
  • VPN tunnel between the VMware Cloud on AWS public IP address and NSX-V/NSX-T/AWS public IP address
  • VPN tunnel from the VMware Cloud on AWS public IP address and the corporate firewall public IP address to a 1:1 NAT between the corporate firewall public IP address and the internal NSX Edge
Note: VMware Aria Operations for Networks does not support the scenario of the VPN tunnel from the VMware Cloud on AWS ending on a corporate firewall and no NAT configured with the internal NSX edge.

Policy-Based VPN Entities

VMware Aria Operations for Networks fetches data for the L3 VPN Session entity which is the actual VPN configured in the data center.

Here are the search terms for the policy-based VPN entities:
Table 1.
Search terms Description
Policy based VPN All policy-based VPN sessions for VMware Cloud on AWS, NSX-V, and NSX-T
VMC Policy based VPN VMware Cloud on AWS policy-based VPN sessions
NSX-T Policy based VPN NSX-T policy-based VPN sessions
NSX Policy based VPN NSX policy-based VPN sessions