To support the communication between tenant workloads by using application virtual networks in NSX-T and to connect tenant workloads to the external network, configure dynamic routing in the shared edge and compute cluster.
Routing occurs in both the North-South and East-West directions.
North-South traffic leaving or entering the workload domain, for example, a virtual machine on an overlay network communicating with an end-user device on the corporate network.
East-West traffic remains in the workload domain, for example, two virtual machines on the same or different segments communicating with each other.
Procedure
Create an NSX-T Edge Cluster Profile for NSX-T Workload Domains with Availability Zones For availability of the routing services and connectivity to the external network, you create a multi-node cluster of NSX-T Edge nodes. To define a common configuration for NSX-T Edge nodes, you create an edge cluster profile.
Deploy the NSX-T Edge Appliances for NSX-T Workload Domains with Availability Zones To provide tenant workloads with routing services and connectivity to networks that are external to the workload domain, deploy NSX-T Edge nodes.
Join the NSX-T Edge Nodes to the Management Plane for NSX-T Workload Domains with Availability Zones After you deploy the NSX-T Edge appliances in the shared edge and compute cluster, to connect them to the NSX-T Manager cluster, join them to the management plane.
Create an Anti-Affinity Rule for the NSX-T Edge Nodes in the Shared Edge and Compute Cluster for NSX-T Workload Domains with Availability Zones To ensure that the two NSX-Т Edge appliances run on different ESXi hosts, create a DRS VM-host anti-affinity rule. If a failure occurs on one of the hosts, the appliance on the other host continues providing routing services.
Create Groups and Rules for NSX-T Workload Domains with Availability Zones Ensure that all the virtual machines that are created in a specific Availability Zone run on ESXi hosts in the same zone create host and virtual machine groups and rules.
Add the NSX-T Edge Nodes to the Transport Zones for NSX-T Workload Domains with Availability Zones After you deploy the NSX-T Edge nodes and join them to the management plane, to connect the nodes to the workload domain, add them to the transport zones for uplink and overlay traffic, and configure the N-VDS switches on each edge node.
Create an NSX-T Edge Cluster for NSX-T Workload Domains with Availability Zones Adding multiple NSX-T Edge nodes to a cluster increases the availability of networking services. An NSX-T Edge cluster is necessary to support the Tier-0 and Tier-1 gateways in the workload domain.
Create and Configure the Tier-0 Gateway for NSX-T Workload Domains with Availability Zones The Tier-0 gateway in the NSX-T Edge cluster provides a gateway service between the logical and physical network. The NSX-T Edge cluster can back multiple Tier-0 gateways.
Create and Configure the Tier-1 Gateway Create and configure the Tier-1 gateway to re-distribute routes to the Tier-0 gateway and to provide routing between tenant workloads.
Verify BGP Peering and Route Redistribution for NSX-T Workload Domains with Availability Zones The Tier-0 gateway must establish a connection to each of the upstream Layer 3 devices in the respective availability zone before BGP updates can be exchanged. Verify that the NSX-T Edge nodes are successfully peering and that BGP routing is established.