VMware NSX

  • 1.  Failover VPN Configuration

    Posted Oct 26, 2017 08:20 PM

    is there a way to achieve a failover ipsec vpn configuration if the remote site has 2 ISPs?  I expect I can create 2 vpns and just leave 1 enabled and manually fail it over, but I was looking to see if there is a way to achieve an automatic failover so no manual intervention would be required.  I haven't found anything in the documentation and when I attempt to do IP#1,IP#2 in the vpn setup it errors out when I try to publish the changes. 



  • 2.  RE: Failover VPN Configuration

    Posted Oct 26, 2017 09:17 PM

    Figured a work-around if there isn't a way to do this (use "any" as the vpn peer and restrict inbound vpn to only the 2 remote peer ip addresses on the upstream firewall).  Would I be able to do this on the edge itself (either in the vpn setup or by firewall rule)?