Private IP VPN CIDR Block(transit gateway) and Customer Gateway on the same Subnet

0

Can someone Please explain why does the Customer Gateway IP Address have to be assigned from the CIDR Block in the Transit GW. I think this is a typo in the document.

https://aws.amazon.com/blogs/networking-and-content-delivery/introducing-aws-site-to-site-vpn-private-ip-vpns/

In Step 4: The IP address to configure in the Customer gateway should be from the Transit Gateway CIDR block we defined in Step 2, and the BGP ASN the one from your on-premises environment.

Tarun
已提問 2 年前檢視次數 1246 次
3 個答案
1

Hi Tarun,

You are correct. Please note information provided in the blogs is subject to change depending on when it was published so its best to cross check with the actual documentation of the service.

I suggest to refer below note from the documentation: https://docs.aws.amazon.com/vpn/latest/s2svpn/private-ip-dx.html

Enter image description here

If the Answer is helpful, kindly Mark the answer as 'accepted' answer, so it will help others in similar situation, Thank you.

profile pictureAWS
專家
已回答 2 年前
profile picture
專家
已審閱 5 個月前
profile picture
支援工程師
已審閱 2 年前
0

A response would be highly appreciated, This is a new feature from AWS and any insight on the documentation would be highly appreciated. I have posted various questions regarding private VPN over the direct connect but I am yet to hear from someone who has successfully implemented this feature.

Tarun
已回答 2 年前
0

Hello!

We updated the blog post in October 2022 removing that typo: the customer gateway IP to configure does not need to be inside the range of the Transit Gateway CIDR block configure. What you need to make sure, as pointed out by Tushar, is that this IP does not overlap with the TGW CIDR block (as well as any CIDR block in AWS or your on-premises location).

AWS
Pablo_S
已回答 1 年前
profile picture
專家
已審閱 5 個月前

您尚未登入。 登入 去張貼答案。

一個好的回答可以清楚地回答問題並提供建設性的意見回饋,同時有助於提問者的專業成長。

回答問題指南