cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
293
Views
0
Helpful
3
Replies

advice sdwan deployment

reylite
Level 1
Level 1

hi

need advice with this simulation topology, i have vmanage, vbond and vsmart communicate with ip private, i wanted my cEdge router register to vmanage via ip public, how can i achieve that ? in this topology there is no firewall

reylite_0-1665978420657.png

thank you

3 Replies 3

nnegi
Cisco Employee
Cisco Employee

If you are using only Internet as the transport for communication between on-prem controllers and Wan Edges, It is recommended to have 1:1 public ip mappings (NAT) for each controller vManage, vBond and vSmart (BackHaul router in your case).
Additionally, you will have to ensure communiaction to vBond from both vManage and vSmart is through public IP only. 

Hello, what if i change topology into hybrid deployment, so vmanage can be access from public and private ? what else do i need to change ? 

reylite_0-1665992160612.png

thank you

nnegi
Cisco Employee
Cisco Employee

The above solution works for hybrid setup too. Since vBond acts as a stun server, it will have both public and private ip information for controllers and wan edges. When a wan edge onboards vBond would provide both public and private addresses for controllers so the wan edges can reach on appropriate links.

Review Cisco Networking for a $25 gift card