VMware Networking Community
mrvmware25
VMware Employee
VMware Employee

Extend management network to an additional DC

Hello Team,

We are planning to extend management to an additional data center through Layer 2, but does not want to add additional NSX-T licensing, What will be the better option

Deploy a standalone Edge as the IPSec VPN. OR Deploy a standalone Edge as the L2 VPN client.

Please help me with better option.

Reply
0 Kudos
1 Reply
bayupw
Leadership
Leadership

Hi,

If you need Layer-3 connectivity only then you can do IPSec VPN.

IPSec VPN can also do secure connections between Edge and non-NSX components (e.g. physical router/firewall)

But if you need Layer-2 connectivity of the networks behind Edge to be extended to the other DC on same Layer-2 network then it will be L2VPN

Bayu Wibowo | VCIX6-DCV/NV
Author of VMware NSX Cookbook http://bit.ly/NSXCookbook
https://github.com/bayupw/PowerNSX-Scripts
https://nz.linkedin.com/in/bayupw | twitter @bayupw
Reply
0 Kudos