Provides step-by-step instructions for configuring VPN interface bridges, detailing the required processes and considerations to enable secure and efficient connectivity.
To configure a bridge interface using Cisco SD-WAN Manager templates:
-
Create a VPN Interface Bridge feature template to configure parameters for logical IRB interfaces.
-
Create a Bridge feature template for each bridging domain, to configure the bridging domain parameters.
Integrated routing and bridging (IRB) allows Cisco IOS XE Catalyst SD-WAN devices in different bridge domains to communicate with each other. To enable IRB, create logical IRB interfaces to connect a bridge domain to a VPN. The VPN provides the Layer 3 routing services necessary so that traffic can be exchanged between different VLANs. Each bridge domain can have a single IRB interface and can connect to a single VPN, and a single VPN can connect to multiple bridge domains on a Cisco IOS XE Catalyst SD-WAN device.
Procedure
| 1. | From the Cisco SD-WAN Manager menu, choose . |
|||||||||||||||||
| 2. | Click Device Templates. In Cisco vManage Release 20.7.x and earlier releases, Device Templates is titled Device. |
|||||||||||||||||
| 3. | Configure an interface to use for bridging servers.
|
|||||||||||||||||
| 4. | Apply access lists to IRB interfaces, select the ACL tab and configure the following parameters. The ACL filter determines what is allowed in or out of a bridging domain.
|
|||||||||||||||||
| 5. | To have an interface run the Virtual Router Redundancy Protocol (VRRP), which allows multiple routers to share a common virtual IP address for default gateway redundancy, choose VRRP. Then click Add New VRRP and configure the following parameters:
|
|||||||||||||||||
| 6. | Configure static Address Resolution Protocol (ARP) table entries on the interface.
|
|||||||||||||||||
| 7. | Configure other interface properties.
|