cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
82
Views
0
Helpful
0
Comments
hkassam
Cisco Employee
Cisco Employee

Update: As of November 2nd, the 146.112.116.8 IP address migration from Hong Kong to Chennai is complete. 

Per the note on the Umbrella data centers page, the Hong Kong data center is now transitioning out of the AS-2 region and will become a standalone data center, on a new IP address (146.112.114.8). 

article-16123441692948_16123529835412.png

To complete this transition, customers with tunnels in the Hong Kong data center are currently connecting to the 146.112.116.8 IP address for IPsec Connections will need to reconnect to 146.112.114.8 before November 2, 2023 to keep their tunnels pointed to Hong Kong.

This means customers will need to identify which IPsec tunnels are connecting to 146.112.116.8 and update the IP address based on the actions required.

Before November 2nd

IP Address DC Automatic Failover DC
146.112.114.8* Hong Kong Not paired**
146.112.116.8 Hong Kong Mumbai, India

After November 2nd

IP Address DC Automatic Failover DC
146.112.114.8 Hong Kong Not paired**
146.112.116.8 Chennai, India Mumbai, India

* Customers using Cisco SD-WAN integration SIG Provider template should already be connected to 146.112.114.8

** Customers using Cisco SD-WAN integration do not rely on Umbrella's anycast based automatic failover, instead they should have Primary and Secondary tunnels configured in the SIG Provider template. All other customers must create a secondary or backup tunnel to another data center. 

 

Action Required: Update Your IP Address 

The process to update your IP address will depend on your network tunnel configuration, but should follow these general steps: 

  1. Locate the IPsec tunnel configuration(s) for the affected connection.
  2. Update the IP address in the configuration from 146.112.116.8 to 146.112.114.8.
  3. Save the configuration changes and test the connection to ensure that it is working properly. You may also be required to reconnect the IPsec tunnel.

If you use Cisco SD-WAN for your SIG IPsec tunnels and connect by IP to 146.112.116.8, you will need to redeploy the templates for the affected devices

SD-WAN customers using automatic data center selection or pick a data center from the drop-down list in vManage should ensure they have a Secondary tunnel configured. 

Please note once you move your IPsec tunnel from 146.112.116.8 to the following Hong Kong data center IP address 146.112.114.8, your tunnel will no longer be paired with the Mumbai, India data center for automatic failover. Customers with tunnels in Hong Kong must configure a backup or secondary tunnel to another data center. 

 

Resources

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: