cancel
Showing results for 
Search instead for 
Did you mean: 

Fabric Extend behind Firewall

Fabric Extend behind Firewall

Configterminal
New Contributor III

Hi, I am going to be setting up fabric extend using a pair of XA1480s.  The headend switch will be in a data center behind a firewall.  The other, at a remote location plugged directly into the internet circuit.

For the DC side, I am planning on creating a DNAT rule on the firewall to allow inbound connectivity from the internet.  My question is, is there a KB that indicates what ports are needed to be allowed to get the tunnel up?  Is it just IPSEC?

thanks 

1 ACCEPTED SOLUTION

EF
Contributor II

Hi,

I belive only UDP 4500 is needed:

Captura de pantalla 2024-02-28 210050.png

source "VOSS User Guide (extremenetworks.com)"

 

Best!!!

 

EF

 

View solution in original post

2 REPLIES 2

EF
Contributor II

Hi,

I belive only UDP 4500 is needed:

Captura de pantalla 2024-02-28 210050.png

source "VOSS User Guide (extremenetworks.com)"

 

Best!!!

 

EF

 

Configterminal
New Contributor III

This is perfect thank you sir! 

GTM-P2G8KFN