cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
559
Views
0
Helpful
1
Replies

Cisco SD-WAN Solution on-prem

HUI YI CHEN
Level 1
Level 1

We are deploying a SD-WAN project that the controllers are hosted in customer Data Center.

Customer request that all controllers needs to sit behind firewall and real controller IP needs to be hidden so as to meet security compliance.

Here is the high level diagram.

All controller will assign private IP, it will do 1:1 NAT(private IP to private IP NAT) on Server firewall.  then will have another 1:1 NAT(private IP to public IP NAT) on Internet firewall.

Will this solution work? 

 

Capture.PNG

 

 

 

 

 

 

 

1 Reply 1

Hi,

 

it should work without an issue. vEDGE should point to correct vBOND address (public) OR hostname that resolves that public address.

 

Regards,

HTH,
Please rate and mark as an accepted solution if you have found any of the information provided useful.