VMware allows the Enterprise users to define and configure a Non VMware SD-WAN Site instance and establish a secure IPSec tunnel directly from a SD-WAN Edge to a Non VMware SD-WAN Site.
Note:
VMware supports only Generic IKEv2 Router (Route Based VPN) and Generic IKEv1 Router (Route Based VPN)
Non VMware SD-WAN Site from Edge. This will enable the Edge to establish an IPSec tunnel to AWS datacenter or Azure datacenter. Currently,
VMware only verifies IPSec tunnel support to AWS and Azure datacenters.
To configure a Non SD-WAN Destinations via Edge:
Procedure
What to do next
- Configure tunnel settings for your Non VMware SD-WAN Site. For more information, see:
- Associate your Non VMware SD-WAN Site to a profile or Edge. For more information, see Configure a Tunnel Between a Branch and a Non SD-WAN Destinations via Edge.
- Configure Tunnel parameters (WAN link selection and Per tunnel credentials) at the Edge level. For more information, see Configure Cloud VPN and Tunnel Parameters at the Edge level.
- Configure Business Policy. Configuring business policy is an optional procedure for Non SD-WAN Destinations via Edge. If there are no Non VMware SD-WAN Sites configured then you can redirect the Internet traffic via business policy. For more information, see Create Business Policy Rules.