You must enable the IPSec VPN service for traffic to flow from the local subnet to the peer subnet.


You must configure at least one IPSec VPN site on the NSX Edge before enabling the IPSec VPN service.


  1. Log in to the vSphere Web Client.
  2. Click Networking & Security > NSX Edges.
  3. Double-click an NSX Edge.
  4. Click Manage > VPN > IPSec VPN.
  5. Next to IPSec VPN Service Status, click Start.