IPSEC VPN with Hub and Spoke VCNs
Summary
IPSEC VPN with Hub and Spoke VCN | Only one VCN communicable at one time from and to on-premiseContent
Hi,
I've set up a hub (VCN 1 Subnet 1) and spoke (VCN 2 Subnet 1) configuration on the IaaS platform and connected from a CPE (SonicWall NSA 4600).
When going about connectivity testing, I'm observing traffic from our on-premise to either VCN 1 Subnet 1 but not VCN 2 Subnet 1 OR VCN 2 Subnet 1 but not VCN 1 Subnet 1; whichever subnet comes up last, seems to take precedence.
- When I configure IPSEC tunnel on the CPE, to route only VCN 2 Subnet 1, traffic flows correctly to and from on-premise and VCN.
Tagged:
0