Search icon CANCEL
Subscription
0
Cart icon
Your Cart (0 item)
Close icon
You have no products in your basket yet
Save more on your purchases! discount-offer-chevron-icon
Savings automatically calculated. No voucher code required.
Arrow left icon
All Products
Best Sellers
New Releases
Books
Videos
Audiobooks
Learning Hub
Newsletter Hub
Free Learning
Arrow right icon
timer SALE ENDS IN
0 Days
:
00 Hours
:
00 Minutes
:
00 Seconds
Arrow up icon
GO TO TOP
VMware NSX Cookbook

You're reading from   VMware NSX Cookbook Over 70 recipes to master the network virtualization skills to implement, validate, operate, upgrade, and automate VMware NSX for vSphere

Arrow left icon
Product type Paperback
Published in Mar 2018
Publisher Packt
ISBN-13 9781782174257
Length 584 pages
Edition 1st Edition
Languages
Arrow right icon
Authors (2):
Arrow left icon
Bayu Wibowo Bayu Wibowo
Author Profile Icon Bayu Wibowo
Bayu Wibowo
Tony Sangha Tony Sangha
Author Profile Icon Tony Sangha
Tony Sangha
Arrow right icon
View More author details
Toc

Table of Contents (19) Chapters Close

Title Page
Packt Upsell
Foreword
Contributors
Preface
1. Getting Started with VMware NSX for vSphere FREE CHAPTER 2. Configuring VMware NSX Logical Switch Networks 3. Configuring VMware NSX Logical Routing 4. Configuring VMware NSX Layer 2 Bridging 5. Configuring VMware NSX Edge Services Gateway 6. Configuring VMware NSX Distributed Firewall (DFW) and SpoofGuard 7. Configuring Cross-vCenter NSX 8. Backing up and Restoring VMware NSX Components 9. Managing User Accounts in VMware NSX 10. Upgrading VMware NSX 11. Managing and Monitoring VMware NSX Platform 12. Leveraging the VMware NSX REST API for Management and Automation 1. Other Books You May Enjoy Index

Configuring IPSEC VPN


IPSEC VPN is a technology that provides a mechanism to establish encrypted network tunnels over non-secure infrastructure such as the internet. Security and data confidentiality are the primary requirements for IPSEC VPN, and the IPSEC VPN implementation on the ESG meets this requirement. The edge supports IKEv1 and the following parameters for IPSEC VPN:

Authentication 

  • Certificate
  • Pre-Shared Key

Encryption algorithms AES

  • AES256
  • Triple DES
  • AES-GCM

Diffie Hellman groups DH2

  • DH5
  • DH14
  • DH15
  • DH16

 

In addition, each edge form factor supports a specific number of IPSEC VPN tunnels, which are follows:

Edge form factor

Number of IPSEC tunnels

Compact

512

Large

 1,600

Quad Large

4,096

X-Large

 6,000

The ESG also supports IPSEC tunnel NAT traversal, so even if your edge is located behind a perimeter firewall which is performing NAT, as long as the appropriate DNAT rules have been configured on the perimeter firewall, you can establish an IPSEC tunnel with a remote endpoint.

In this recipe, we will configure...

lock icon The rest of the chapter is locked
Register for a free Packt account to unlock a world of extra content!
A free Packt account unlocks extra newsletters, articles, discounted offers, and much more. Start advancing your knowledge today.
Unlock this book and the full library FREE for 7 days
Get unlimited access to 7000+ expert-authored eBooks and videos courses covering every tech area you can think of
Renews at £13.99/month. Cancel anytime
Visually different images