Networking Guide

Option Description
Peer IP
Enter the peer IP, which is the public IP address of the remote device to
which you are connecting.
NOTE If NAT is configured for the peer, you enter the public IP address
that the devices uses for NAT.
Encryption protocol
Select the encryption type from the drop-down list.
NOTE The encryption type you select must match the encryption type
configured on the remote site VPN device.
Shared Key
Enter an alphanumeric string between 32 and 128 characters, which
includes at least one uppercase letter, one lowercase letter, and one
number.
NOTE The shared key must match the key that is configured on the remote
site VPN device.
MTU
Enter the the maximum transmission units (MTU) for the VPN connection.
The MTU is the maximum amount of data that can be transmitted in one
packet before it is divided into smaller packets.
9 Click OK.
The VPN configuration appears in the table.
What to do next
You must configure the IPsec VPN connection from both sides of the connection—vCloud Air and your on-
premises facility. This procedure detailes how to configure the connection for vCloud Air. Configure the
connection for your on-premises facility.
SSL VPN for Data Center Extension
Using Data Center Extension, you can extend your enterprise network to the public cloud (vSphere or
vCloud Director), allowing you to move virtual machines from your private cloud to vCloud Air while
retaining the same IP addresses and MAC addresses. Data Center Extension is a Layer 2 extension from
your existing enterprise network to vCloud Air over a secure SSL VPN connection. Once you are done, you
can consume and manage your moved virtual machines by using their same IP addresses and MAC
addresses.
NOTE To use Data Center Extension with vCloud Air, you must purchase a VMware vCloud Connector
Advanced Edition license.
With Data Center Extension, you can extend your existing IP address range from your on-premise data
center into vCloud Air without the need to change your applications. Data Center Extension uses an SSL
VPN between two gateways thus bridging the two sites; you are not running VXLAN over a WAN.
See the following use cases for using Data Center Extension with vCloud Air:
n
When you have licenses tied to MAC addresses
n
Your virtual machine applications have dependencies on IP addresses or MAC addresses
n
You lack DNS control, which prevents DNS updates
n
To avoid invalidating existing security rules or the need to re-configure access control lists
Data Center Extension has the following requirements.
n
Extended Network Considerations:
n
Extended virtual machines use the on premise gateway.
n
All network traffic traverses the SSL VPN connection.
VMware vCloud Air Networking Guide
34 VMware, Inc.