5.5

Table Of Contents
What to do next
Create a VPN tunnel between an organization virtual datacenter network backed by the edge gateway to
another network.
Configure Public IPs for External Networks
You can configure a public IP address for external networks associated with an edge gateway.
Procedure
1 Click the Manage & Monitor tab and click Organization VDCs in the left pane.
2 Double-click the organization virtual datacenter name to open the organization virtual datacenter.
3 Click the Edge Gateways tab, right-click the edge gateway name and select Edge Gateway Services.
4 Click the VPN tab and click Configure Public IPs.
5 Type an IP address to act as the public IP address for each external network and click OK.
Creating VPN Tunnels on an Edge Gateway
You can create VPN tunnels between organization virtual datacenter networks on the same organization,
between organization virtual datacenter networks on different organizations, and between an organization
virtual datacenter network and an external network.
vCloud Director does not support multiple VPN tunnels between the same two edge gateways. If there is an
existing tunnel between two gateways and you want to add another subnet to the tunnel, delete the existing
VPN tunnel and create a new one that includes the new subnet.
Create a VPN Tunnel In an Organization for an Organization Virtual Datacenter Network Backed by
an Edge Gateway
You can create a VPN tunnel between an organization virtual datacenter network that is backed by edge
gateway and another organization virtual datacenter in the same organization.
System administrators and organization administrators can create VPN tunnels.
If a firewall is between the tunnel endpoints, you must configure it to allow the following IP protocols and
UDP ports:
n
IP Protocol ID 50 (ESP)
n
IP Protocol ID 51 (AH)
n
UDP Port 500 (IKE)
n
UDP Port 4500
Prerequisites
Verify that you have at least two routed organization virtual datacenter networks in the organization. One
of these networks must be backed by the edge gateway. Both organization virtual datacenter networks must
have VPN enabled.
Procedure
1 Click the Manage & Monitor tab and click Organization VDCs in the left pane.
2 Double-click the organization virtual datacenter name to open the organization virtual datacenter.
3 Click the Edge Gateways tab, right-click the edge gateway name. and select Edge Gateway Services.
4 Click the VPN tab and click Add.
5 Type a name and optional description.
Chapter 5 Managing Cloud Resources
VMware, Inc. 73