cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
281
Views
0
Helpful
3
Replies

Service VPN Query

knaik99
Level 1
Level 1

if we have service VPN 10 at Dubai Vedge and service VPN 20 at India Vedge then Can they talk to each other by default?

I think VPN is like VRF concept so do we have to keep same VPN ID at both end by default?

and one interface is member of one service VPN ,right?  

3 Replies 3

svemulap@cisco.com
Cisco Employee
Cisco Employee
hi Knaik99 -

They don't talk to each other by default. You can do extranet, if for example, VPN 10 needs to be reachable from VPN 20 vice versa.
i.e., when services that reside in a VPN must be shared across users residing in multiple other VPNs, you can create a vSmart extranet
VPN control policy.

HTH

so VPN id is like MPLS VRF concept so Same VPN id can talk freely right?

Yes.
Same concepts.

Additional Notes:
Traffic that enters the router is assigned to a VPN, which not only isolates user traffic, but also provides routing table isolation. This ensures that a user in one VPN cannot transmit data to another VPN unless explicitly configured to do so. When traffic is transmitted across the WAN, a label is inserted after the ESP header to identify the VPN that the user’s traffic belongs to when it reaches the remote destination.

HTH.

Review Cisco Networking for a $25 gift card