IT Central Station is now PeerSpot: Here's why
2022-06-03T16:54:00Z

Looking for a piece of advice and tips on the deployment of VPN concentrators for SD-WAN tunnels?

fdiazm - PeerSpot reviewer
Product Manager at Entel Chile
60

Hi peers,

At the moment, we are evaluating a solution where tunnel concentrators are going to be in virtual machines. And despite the fact where we should go in terms of technology, space, payment model and everything, this solution is something new in the company. 

So, we're looking for any previous experience and advice about how to make a proper solution and which product/s to use. Please share your thoughts.

Thanks. 

PeerSpot user
Guest
33 Answers

Michael Velasco - PeerSpot reviewer
Top 10Consultant

Definitely look at Aruba EdgeConnect (formerly known as SilverPeak). 


My main client has had them in production for years for five hospital campuses and their headquarters site. They have hardware appliances and Virtual Appliances.

Assuming you go the VA route, make sure you're thinking about providing enough bandwidth on the pNIC(s) you have connected to the vSwitch your VA(s) in a site are connected to the outside world through. 


You'll be fine if you have something like a C7000 with Flex10 pNICs, but even if your hypervisor is some sort of 1U make sure it has 1G, 10G, 25G, 40G, 50G, or 100G pNIC(s) in it according to what your total MPLS and/or broadband Internet connections, i.e., Comcast or whatever, can provide and make sure there are no network chokepoints between your hypervisor(s) with your VA(s) and your enterprise WAN/Internet (for IPsec virtual WAN underlay tunnels) connections.

Start doing your homework NOW on what applications in your catalog are the highest priority, high priority, medium priority, best effort, etc. over the SD-WAN. 


Prepare yourself for difficult conversations with leadership about non-working vacillating de facto lack-of-decision like, "It's all top priority." No, you, leadership, set the POLICY on when something gets pitched over the side what goes first and what goes last. We implement YOUR policy.

2022-06-22T03:36:30Z
Frank Theilen - PeerSpot reviewer
Top 20Real User

In my opinion,y the way SD-WAN is designed, you will need multiple network endpoints or network-based concentrator hardware to handle multiple tunnels incoming. 


If you host them as virtual devices, you share the underlying network hardware and therefore lose performance, not gain it. If you want to virtualize them, use several, many endpoints (not just one).

2022-06-08T06:39:58Z
Kowligi Prakash - PeerSpot reviewer
Vendor

FatPipe Networks Inc - Hybrid Networking Connectivity. 


We use our patented MPSec technology in order to provide bandwidth aggregation, redundancy, common management, compression and inbound/outbound load balancing. This solution is used by many of our customers for video conference, VoIP and data for the seamless switchover.


Please check www.fatpipeinc.com

2022-06-08T05:40:38Z
Buyer's Guide
Fortinet FortiGate-VM
August 2022
Learn what your peers think about Fortinet FortiGate-VM. Get advice and tips from experienced pros sharing their opinions. Updated: August 2022.
620,600 professionals have used our research since 2012.