The above solution works for hybrid setup too. Since vBond acts as a stun server, it will have both public and private ip information for controllers and wan edges. When a wan edge onboards vBond would provide both public and private addresses for co...
If you are using only Internet as the transport for communication between on-prem controllers and Wan Edges, It is recommended to have 1:1 public ip mappings (NAT) for each controller vManage, vBond and vSmart (BackHaul router in your case). Addition...