Monday, May 13, 2019

IPSec in the Big 3 clouds

My system runs a full MPLS L3VPN architecture that has to be extended to the Big 3 (Amazon, Google, MSFT) cloud providers. We have between 16 and 32 L3VPNs to be extended to the compute providers. Our usual solution is vSRX endpoints landing L3VPNs over GRE/IPSec backhaul into main campus (aye, University). My Cloud Guy says this solution won't work in at least one of the Big 3 because they broke networking for scale-out.

Is Cloud Guy wrong? GRE/IPSec is standards-based and even $(Cloud-3) breaking it seems like a sketch read.

Thoughts?



No comments:

Post a Comment