Private IP VPN CIDR Block(transit gateway) and Customer Gateway on the same Subnet

0

Can someone Please explain why does the Customer Gateway IP Address have to be assigned from the CIDR Block in the Transit GW. I think this is a typo in the document.

https://aws.amazon.com/blogs/networking-and-content-delivery/introducing-aws-site-to-site-vpn-private-ip-vpns/

In Step 4: The IP address to configure in the Customer gateway should be from the Transit Gateway CIDR block we defined in Step 2, and the BGP ASN the one from your on-premises environment.

3回答
1

Hi Tarun,

You are correct. Please note information provided in the blogs is subject to change depending on when it was published so its best to cross check with the actual documentation of the service.

I suggest to refer below note from the documentation: https://docs.aws.amazon.com/vpn/latest/s2svpn/private-ip-dx.html

Enter image description here

If the Answer is helpful, kindly Mark the answer as 'accepted' answer, so it will help others in similar situation, Thank you.

profile pictureAWS
エキスパート
回答済み 2年前
profile picture
エキスパート
レビュー済み 5ヶ月前
profile picture
サポートエンジニア
レビュー済み 2年前
0

A response would be highly appreciated, This is a new feature from AWS and any insight on the documentation would be highly appreciated. I have posted various questions regarding private VPN over the direct connect but I am yet to hear from someone who has successfully implemented this feature.

Tarun
回答済み 2年前
0

Hello!

We updated the blog post in October 2022 removing that typo: the customer gateway IP to configure does not need to be inside the range of the Transit Gateway CIDR block configure. What you need to make sure, as pointed out by Tushar, is that this IP does not overlap with the TGW CIDR block (as well as any CIDR block in AWS or your on-premises location).

AWS
Pablo_S
回答済み 1年前
profile picture
エキスパート
レビュー済み 5ヶ月前

ログインしていません。 ログイン 回答を投稿する。

優れた回答とは、質問に明確に答え、建設的なフィードバックを提供し、質問者の専門分野におけるスキルの向上を促すものです。

質問に答えるためのガイドライン

関連するコンテンツ