Private IP VPN CIDR Block(transit gateway) and Customer Gateway on the same Subnet

0

Can someone Please explain why does the Customer Gateway IP Address have to be assigned from the CIDR Block in the Transit GW. I think this is a typo in the document.

https://aws.amazon.com/blogs/networking-and-content-delivery/introducing-aws-site-to-site-vpn-private-ip-vpns/

In Step 4: The IP address to configure in the Customer gateway should be from the Transit Gateway CIDR block we defined in Step 2, and the BGP ASN the one from your on-premises environment.

Tarun
feita há 2 anos1246 visualizações
3 Respostas
1

Hi Tarun,

You are correct. Please note information provided in the blogs is subject to change depending on when it was published so its best to cross check with the actual documentation of the service.

I suggest to refer below note from the documentation: https://docs.aws.amazon.com/vpn/latest/s2svpn/private-ip-dx.html

Enter image description here

If the Answer is helpful, kindly Mark the answer as 'accepted' answer, so it will help others in similar situation, Thank you.

profile pictureAWS
ESPECIALISTA
respondido há 2 anos
profile picture
ESPECIALISTA
avaliado há 5 meses
profile picture
ENGENHEIRO DE SUPORTE
avaliado há 2 anos
0

A response would be highly appreciated, This is a new feature from AWS and any insight on the documentation would be highly appreciated. I have posted various questions regarding private VPN over the direct connect but I am yet to hear from someone who has successfully implemented this feature.

Tarun
respondido há 2 anos
0

Hello!

We updated the blog post in October 2022 removing that typo: the customer gateway IP to configure does not need to be inside the range of the Transit Gateway CIDR block configure. What you need to make sure, as pointed out by Tushar, is that this IP does not overlap with the TGW CIDR block (as well as any CIDR block in AWS or your on-premises location).

AWS
Pablo_S
respondido há um ano
profile picture
ESPECIALISTA
avaliado há 5 meses

Você não está conectado. Fazer login para postar uma resposta.

Uma boa resposta responde claramente à pergunta, dá feedback construtivo e incentiva o crescimento profissional de quem perguntou.

Diretrizes para responder a perguntas