VPN Site-to-Site
VPN Site-to-Site

Introduction

  • With a Site-to-Site VPN, companies can build a complete virtual private network for diverse locations. This service connects various intranets in a continuous and secure manner, allowing employees to conveniently and securely share resources between intranets.

  • FPT Cloud Site-to-Site VPN is a fully managed VPN service that allows you to create a secure connection between your office network and FPT's cloud resources. Using IPSec tunneling, this service connects enterprise data centers with branch offices, making it possible to access cloud-based applications and services without revealing confidential data.

Things to keep in mind before you create a Site-to-Site VPN:

  • Network Architecture: Ensure your On-Premises network architecture is aligned with your S2S VPN deployment. This includes identifying IP addresses, network partitions, and the right network devices to establish a VPN connection.

  • Floating IP: FPT Cloud system needs 1 public IP to connect to S2S VPN. The public IP used has not been assigned to any other service

  • IP addressing: Make sure that the IP addresses used in the S2S VPN do not conflict with other networks in the organization or public networks. Define end-to-end IP addresses for VPN gateways and configure firewalls to allow traffic.

  • Protocol and encryption: Choose the right protocol and encryption configuration for your S2S VPN. The most common is IPSec with AES or 3DES encryption, along with authentication protocols such as IKEv1 or IKEv2. Ensure the corresponding security configuration to ensure high security.

On this page