All Posts

Does your environment have its own orchestrator? I am using VMware managed orchestrator VMware SD-WAN and have never built my own orchestrator environment. So I can't provide an answer.
The behavior of Edge depends on the Edge software version. In this case, Edge version 5.0.1.4 is affected. Of course, the functions handled by Orchestrator will work with Orchestrator's software ve... See more...
The behavior of Edge depends on the Edge software version. In this case, Edge version 5.0.1.4 is affected. Of course, the functions handled by Orchestrator will work with Orchestrator's software version 5.2.
I deployed version 5.2 using a new image, not an upgrade。 Use these ova list: velocloud-orchestrator-5.2.0.1-R5201-20230623-GA-007589abdb.ova velocloud-vcc-v2-5.2.0.1-8341-R5201-20230619-GA-2... See more...
I deployed version 5.2 using a new image, not an upgrade。 Use these ova list: velocloud-orchestrator-5.2.0.1-R5201-20230623-GA-007589abdb.ova velocloud-vcc-v2-5.2.0.1-8341-R5201-20230619-GA-2e5c1b2151.ova edge-VC_VMDK-x86_64-5.2.0.1-8341-R5201-20230619-GA-2e5c1b2151-updatable-ext4.ova
Hi, I think you should be careful with the default route "0.0.0.0/0". VMware SD-WAN Edge has a default route when the interface gateway is configured. If multiple Internet lines terminate to the... See more...
Hi, I think you should be careful with the default route "0.0.0.0/0". VMware SD-WAN Edge has a default route when the interface gateway is configured. If multiple Internet lines terminate to the VMware SD-WAN Edge, the route selection to the Internet is configured by business policy. If the default route is obtained by static or dynamic routing, it is preferred. Default routes obtained by static or dynamic routing can cause them to take precedence in many cases, causing unintended behavior. This kb might be helpful. Troubleshooting Unexpected Business Policy Behavior in VeloCloud SD-WAN (71317) https://kb.vmware.com/s/article/71317 VMware SD-WAN switch ports are L2 switch access ports. It is not available for cases where routing is desired. This KB will help you understand the interface settings. VMware SD-WAN by VeloCloud Interface Types and WAN Overlay (74846) https://kb.vmware.com/s/article/74846?lang=en_us If you want to set up an overlay using multiple VLANs on a single routing interface, the following description is helpful. ”2. Multiple Overlays Per Physical Interface” If you set the WAN overlay setting to User defined instead of Auto,you should be able to set up a WAN overlay that uses multiple VLANs.
Hi, I have heard in past webinar that VMware SD-WAN Edge behavior depends on the version of the Edge software. Orchestrator is automatically upgraded and new features appear in the UI, but if the E... See more...
Hi, I have heard in past webinar that VMware SD-WAN Edge behavior depends on the version of the Edge software. Orchestrator is automatically upgraded and new features appear in the UI, but if the Edge version is still old, it should not work. Sorry, I don't remember which webinar I heard this.
Hi, VMware may not have assigned software to your tenant. Please contact a VMware Sales Engineer or SR to request that the appropriate software be assigned to you.
Hi Maybe the VCO is failing to update. We recommend applying for SR. regard
Thank you for saving my day. In my browsing on internet I found a helpful website for essay topics! Choosing the right essay topic can be 
1,the page of Edges overview show nothing. Then I cannot find the active mail button,but it show information in old UI(version 5.1.0)   2,the page of Gateway routing Table show "connecting..." ... See more...
1,the page of Edges overview show nothing. Then I cannot find the active mail button,but it show information in old UI(version 5.1.0)   2,the page of Gateway routing Table show "connecting..." always.          
No it can't do any of these. DHCP option 121 not supported. NATing traffic between VLANs, also not supported.
So The final cut: VMware claims that they support Edge to "Generic IKEv1/2 Router" VPN, but they NEVER define the word "Generic". I have been configuring generic IKEv1 and v2 IPsec VPNs on Cisco ASA... See more...
So The final cut: VMware claims that they support Edge to "Generic IKEv1/2 Router" VPN, but they NEVER define the word "Generic". I have been configuring generic IKEv1 and v2 IPsec VPNs on Cisco ASA and ISR for the past 9 years. We connected to various peers, some Cisco, some IBM, Palo Alto, Juniper. We even connected to software peers like pfSense. Never have I asked what the other side was. We agree on the VPN version, share parameters, PSK, subnets, and before you know it, a VPN is up and running with end to end connectivity. No fuss. Yet, I have failed to connect to the Edge. I only managed to connect to a Gateway, albeit, with many many limitations.
Ok guys so here is the 101 after I got our first site online for production: Never compare the Edge with a Cisco router (even the smallest one). The VMware Edge (and the entire VMware SASE solution... See more...
Ok guys so here is the 101 after I got our first site online for production: Never compare the Edge with a Cisco router (even the smallest one). The VMware Edge (and the entire VMware SASE solution) is immature. It cannot function as a full fledged router. The amount of limitations is staggering You CAN configure trunks, assign which VLAN is untagged, which VLANs are allowed on a switched trunk interface, BUT, you CANNOT NAT/PAT where you like. You ARE LIMITED to NAT/PAT between a LAN destination and (what SASE considers to be) a WAN. You definitely CANNOT nest NAT/PAT, and you CANNOT reroute/PAT traffic between VLANs. Believe me, I tried. I escalated this to support who stated that this feature is simply NOT SUPPORTED The DHCP server feature, although does support SOME common options, DOES NOT SUPPORT option 121. Again I asked tech support, and they confirmed it. What all my might and knowledge on the subject, I could not get the Edge-to-Cisco ISR VPN tunnel to work. I have been doing this for the past 9 years (VPN from Cisco ASA/ISR to various platforms, HW and SW), but I have finally met me arch nemesis. Tech support were as usual, no help and I got the "we will check and come back" thing. They never came back. Please make sure you know the product's abilities and limitations BEFORE you sign the contract. Hope this helps some of you Best regards, Talal
Good day, I have just had the same issue but when connecting to a Cisco ISR. I have since resolved this but you will need to know the limitations: The setup is limited to what the Gateway supports... See more...
Good day, I have just had the same issue but when connecting to a Cisco ISR. I have since resolved this but you will need to know the limitations: The setup is limited to what the Gateway supports. For example, to connect to a Cisco ISR, you are limited to using a Tunnel interface routing method, and cannot use a Crypto ACL. Also in my case, I am stuck with IKEv1, and with SHA hashing. SHA-256 and above are not supported. Trying to connect a Cisco ISR router to the Gateway using the "Generic IKEv1/2 Router" method has failed so far.  What option did you use to connect to your Fortigate? I could not spot such an option? Can you share the configuration on your Fortigate and on Orchestrator? I might be able to spot some discrepancies.  regards, Talal
The secondary IP addresses and sub-interfaces ended up not being the solution. Here is the bottom line: Switched Ports (like you mentioned before) do not support Overlay. They are used for LAN onl... See more...
The secondary IP addresses and sub-interfaces ended up not being the solution. Here is the bottom line: Switched Ports (like you mentioned before) do not support Overlay. They are used for LAN only. In order to terminate multiple WAN links on a single interface, the interface must be routed, and, at the Edge level, multiple User-Defined WAN links must be created and then linked to that routed interface. The exact method had been lost to me since the deprecation of the old GUI after the Orchestrator upgrade to SD-WAN software version 5.2. Once I figure it out, I will publish a walkthrough
Good day, So we have just migrated our first site to VMware SD-WAN. NOT the most pleasant experience but we managed it somehow. I knew there was a learning curve but I didn't think it would be this... See more...
Good day, So we have just migrated our first site to VMware SD-WAN. NOT the most pleasant experience but we managed it somehow. I knew there was a learning curve but I didn't think it would be this steep, given the fact that I have been Cisco and Comptia certified for the past 14 years. Anyways. Our provider had limited us to Edge version 5.0.1.4. On September 9th, Orchestrator and the Gateways were updated to SD-WAN software 5.2. With this update, the classic/Legacy GUI was gone. Good riddance IMHO, but it was still needed as our support used the old interface to do things. Now I am unable to configure a couple of things but I will manage somehow. Support turned out to be less than helpful, so whatever. The question here is: Which version of SD-WAN am I running, system-wise? 5.2 or 5.0.1.4? I am asking this because I want to know which features I have access to? the one in 5.0.1.4 or the ones added in 5.2? Regards, Talal
Sorry for the late reply.  What I meant to say that I was applying the LAB method on production environment, so there were no pages.
Which page is the step where you got the error? Is it the attached procedure?  
Hi, Is it the opposite port of Edge's GE3? If you know GE3 to be a routed port, I think the opposite port should also be routed. Regard
They might be in the set discussed here: https://virtualg.uk/official-vmware-visio-stencils-icons-for-2022/
Please share if anyone finds them.