SD WAN GATEWAY SELECTION:-

SD WAN GATEWAY SELECTION:-


The selection of Primary gateway is actually based on location. If you spin up an edge in China, it will most likely pick Hong Kong. In order to "change" the primary gateway to Singapore, you can change the address of the edge to Singapore, and it will pick a gateway in Singapore.

Super Gateway is auto-selected based on the highest concentration of edges, and it's used as a last resort. Note, the concept of gateways is transparent to user. If you want to check the performance of using different gateway for VPN between two edges, one option is to use a customized pool with limited number of gateways (e.g. only Hong Kong and Frankfurt). However, I would recommend we leave it as is, so you know the actual performance in real life.
Note: the gateway selection is for the most part an automated process.


Default pool which is being used by this customer does not have any other gateways which are geographically nearer than these gateways.
-> However, we have two gateways vcg8-sin1 (singapore) and vcg7-hkg2 (Hong kong) on this VCO which could be the closest to the edge location.
-> Once you check and confirm this change, we could go ahead and change the gateway pool which includes the above two gateways along with the existing ones. This would cause a service impact as the edge would get disconnected and perform the check and connect to the new gateway.

SD WAN High Availability HA-Deployments:-

SD WAN High Availability HA-Deployments:-


Two ways to enable HA:-
1)manually enable under Device TAB>HA-Enable
2)while creating a new VCE check *enable HA


One click to enable HA
++Devices automatically discover and establish active/standby relationship
NOTE1:- There is no Preempt in VCE.
NOTE2:- by default highest serial number will be Active.

When failover happens:-
++links are down
++services restarts
++when config pushed from VCO (only device tab)


Failover link:-
++exchanges HEARTBEAT
++exchanges State information
++exchanges LAN/WAN port status
++exchanges session information

++In HA heartbeat it sends list of ports which are active to VCE(standby)
VCE(Active)----list of ports to ---->VCE(standby)

EX:- If two ports are active in VCE(Active) then the same Two ports should be active in VCE(Standby)
else there will be failover.

HA design:-
Layer-2-
should be both on LAN and WAN side.
++mac and ip address will be same for active/standby
Layer-3:-
++LAN-HSRP/VRRP
++WAN-L2
++route to VIP from VCE


Powered by Blogger