Manual Secure Peering initiated from PE appliance at DC site and Branch PE appliance 编辑

March 12, 2021 Contributed by:  SC

This deployment configures DC site PE appliance in LISTEN ON mode and Branch site PE appliance in CONNECT TO mode.

  • PE DC appliance is in LISTEN ON mode (on port 443).
  • Branch PE appliance is in CONNECT-TO mode.
  • LISTEN-ON IP for PE is in the interface IP associated to the routing domain for which “Redirect to WANOP” is enabled.
  • Manually upload CA and Cert Key pair certificates obtained from authentic source of certificate authority.


Configuration

To configure auto secure peering initiated from an PE appliance at DC site and PE appliance at branch site:

  1. Upload CA Certificate and CA Key Certificate obtained from authentic certificate and provide to SD-WAN as shown below. localized image localized image

  2. On a new PE appliance at the DC site, in the SD-WAN web GUI, go to Configuration > Secure Acceleration > Secure Peering. localized image

  3. Configure keystore by providing the keystore password or by disabling the keystore. localized image localized image

  4. Enable secure peering by selecting CA Certificate radio button and providing uploaded CA and CA Key pair certificates appropriately as shown below. localized image

  5. Provide Remote machine’s Virtual IP along with Port 443 as shown below. localized image


Monitoring

  1. To validate if the Private CA and Private Certificate Key pair is generated successfully, review the information below. localized image

  2. On partner appliance, View Secure Partner Information on the Premium (Enterprise) Edition appliance under Monitoring > Partners > Secure Partners page. localized image


Troubleshooting

View Secure Partner Success / Failure Information on the Premium (Enterprise) Edition Appliance under Monitoring > WAN Optimization > Partners > Secure Partners page. localized image

如果你对这篇内容有疑问,欢迎到本站社区发帖提问 参与讨论,获取更多帮助,或者扫码二维码加入 Web 技术交流群。

扫码二维码加入Web技术交流群

发布评论

需要 登录 才能够评论, 你可以免费 注册 一个本站的账号。
列表为空,暂无数据

词条统计

浏览:81 次

字数:3732

最后编辑:7年前

编辑次数:0 次

    我们使用 Cookies 和其他技术来定制您的体验包括您的登录状态等。通过阅读我们的 隐私政策 了解更多相关信息。 单击 接受 或继续使用网站,即表示您同意使用 Cookies 和您的相关数据。
    原文