Reader small image

You're reading from  Designing and Implementing Microsoft Azure Networking Solutions

Product typeBook
Published inAug 2023
PublisherPackt
ISBN-139781803242033
Edition1st Edition
Tools
Concepts
Right arrow
Author (1)
David Okeyode
David Okeyode
author image
David Okeyode

David is the EMEA Azure CTO at Palo Alto Networks. Before that, he was an independent consultant helping companies secure their Azure environments through private expert level trainings and assessments. He has authored two books on Azure security - "Penetration Testing Azure for Ethical Hackers" and "Microsoft Azure Security Technologies Certification and Beyond. He has also authored multiple cloud computing courses for popular platforms like LinkedIn Learning. He holds over 15 cloud certifications and has over a decade of experience in Cybersecurity (consultancy, design, implementation). David is married to a lovely girl who makes the best banana cake in the world. They love travelling the world together!
Read more about David Okeyode

Right arrow

Configuring Site-to-Site connectivity using VWAN

Another key design decision is how we are going to connect remote/on-premises networks to our VWAN hub. We can either do this via ExpressRoute or Site-to-Site VPN (S2S VPN) connections.

To implement S2S VPN connections, we need to deploy S2S VPN gateway instances into our VWAN hub by specifying the number of gateway scale units that we want. This can be done during the creation of the hub or added after. The number that we specify for Gateway scale units defines the aggregate maximum throughput that will be available for S2S VPN connections (Figure 7.25).

Figure 7.25 – VWAN hub gateway scale units

Figure 7.25 – VWAN hub gateway scale units

S2S VPN gateway instances in a VWAN hub are always deployed in an active-active setup (Figure 7.26). The maximum supported number of gateway scale units is 20 scale units (Figure 7.25), which deploys two active instances, with each instance supporting 10 Gbps (Figure 7.25). This requires an implementation...

lock icon
The rest of the page is locked
Previous PageNext Page
You have been reading a chapter from
Designing and Implementing Microsoft Azure Networking Solutions
Published in: Aug 2023Publisher: PacktISBN-13: 9781803242033

Author (1)

author image
David Okeyode

David is the EMEA Azure CTO at Palo Alto Networks. Before that, he was an independent consultant helping companies secure their Azure environments through private expert level trainings and assessments. He has authored two books on Azure security - "Penetration Testing Azure for Ethical Hackers" and "Microsoft Azure Security Technologies Certification and Beyond. He has also authored multiple cloud computing courses for popular platforms like LinkedIn Learning. He holds over 15 cloud certifications and has over a decade of experience in Cybersecurity (consultancy, design, implementation). David is married to a lovely girl who makes the best banana cake in the world. They love travelling the world together!
Read more about David Okeyode