Two separated networks - Hub and Spoke resolved?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-10-2021 10:41 AM
If I have two totally isolated network.. say one color private1 and the other private2.. and no communication path between the networks... can I simply have a HUB and Spoke design where the Hub is connected to the private1 and the private2?... This way each spoke site will just encrypt private1 traffic from vpn 30 to the hub.. the hub will decrypt... and then re-encrypt the private2 traffic to vpn 30 on the other priavte2 isolated network?
Is this scenario supported or in the design guide?
Thanks!

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-11-2021 12:45 PM
Hi,
totally supported design. In CVD figure 66 shows this type of deployment.
https://www.cisco.com/c/en/us/td/docs/solutions/CVD/SDWAN/cisco-sdwan-design-guide.html
But honestly I used different approach in one of customer network. Just created 2 tunnel groups (even on Hubs) and controller traffic with routing (like 2 DMVPN networks).
HTH,
Please rate and mark as an accepted solution if you have found any of the information provided useful.
