OCI FastConnect - Implementing OCI Site-to-Site VPN over FastConnect Private Peering
(Doc ID 3020244.1)
Last updated on MAY 01, 2024
Applies to:
Oracle Cloud Infrastructure FastConnect - Version N/A to N/A [Release 1.0]Information in this document applies to any platform.
Goal
IPSec over FastConnect lets you set up Site-to-Site VPN with secure IPSec tunnels on your FastConnect virtual circuits, thereby providing added security to what is already a private connection. These IPSec tunnels protect network-to-network connections on Layer 3.
IPSec over FastConnect is available for all three connectivity models (partner, colocated, and third-party) and supports the following capabilities:
- Multiple IPSec tunnels can exist over a single FastConnect virtual circuit.
- A mix of encrypted and unencrypted traffic can exist on the same virtual circuit, though you can require that all traffic is encrypted.
- IPSec tunnel endpoints can use public or private IP addresses, but if the addresses are public they will not be reachable over the internet since the transport for this connectivity is a private connection and not on the internet.
- You can aggregate multiple IPSec tunnels between the same endpoints using ECMP.
Solution
To view full details, sign in with your My Oracle Support account. |
|
Don't have a My Oracle Support account? Click to get started! |
In this Document
Goal |
Solution |