Explains how Cisco Catalyst SD-WAN features apply to remote access traffic after the headend establishes connections with remote access users.
Cisco Catalyst SD-WAN features for remote access traffic are security and networking capabilities that
-
apply to remote access traffic after it is decrypted and becomes inbound traffic on the assigned service VPN
-
are configured for the service VPN where the SD-WAN RA headend places remote access users based on their identity, and
-
include NAT-DIA, UTD, and ZBF capabilities.
Configuration requirements
When the SD-WAN RA headend establishes a connection with a remote access user, it places the user in a service VPN based on the identity of the remote access user. Ensure that each service VPN is configured with the Cisco Catalyst SD-WAN features that you want to apply to the remote access traffic that uses that service VPN.