Create a VPN Tunnel In an Organization
An organization administrator can create a VPN tunnel between two organizations vDC networks in the same
organization.
If the tunnel endpoints have a firewall between them, configure the firewall to allow the following IP protocols
and UDP ports:
n
IP Protocol ID 50 (ESP)
n
IP Protocol ID 51 (AH)
n
UDP Port 500 (IKE)
n
UDP Port 4500
Prerequisites
Verify that the following items are in place.
n
At least two routed organization vDC networks with nonoverlapping IP subnets and VPN enabled on
both networks.
n
vShield Manager 5.1.
Procedure
1 Click Administration and select the organization vDC.
2 Click the Org vDC Networks tab, right-click the organization vDC network name, and select Configure
Services.
3 Click the VPN tab and click Add.
4 Type a name and optional description.
5 Select a network in this organization from the drop-down menu and select a peer network.
6 Review the tunnel settings and click OK.
vCloud Director configures both peer network endpoints.
Create a VPN Tunnel Between Organizations
An organization administrator can create a VPN tunnel between two organization vDC networks in different
organizations. The organizations can be part of the same vCloud Director installation or a different installation.
If the tunnel endpoints have a firewall between them, you must configure it to allow the following IP protocols
and UDP ports:
n
IP Protocol ID 50 (ESP)
n
IP Protocol ID 51 (AH)
n
UDP Port 500 (IKE)
n
UDP Port 4500
Prerequisites
n
A routed organization vDC network in each of the organizations. The organization vDC networks must
have nonoverlapping IP subnets and site-to-site VPN enabled.
n
vShield Manager 5.1.
Chapter 3 Managing Cloud Resources
VMware, Inc. 27
Commenti su questo manuale