Planning and Deployment of Edge Spoke Gateway

This topic provides the prerequisites and deployment steps to launch an Aviatrix Edge Spoke Gateway on the Aviatrix Edge Platform.

Prerequisites

The prerequisites to deploy an Aviatrix Edge Spoke Gateway for on-premises on the Aviatrix Edge Platform.

1. Procure and Onboard the Edge Device

Before you can deploy an Aviatrix Edge Spoke Gateway, you must procure and onboard your edge device onto the Aviatrix Edge Platform. For more information, see Installing Edge OS and Onboaring Dell Hardware.

2. Obtain Edge Gateway Interface IP Addresses

The Edge Spoke Gateway on the Aviatrix Edge Platform supports one WAN, one LAN, and one Management interface.

You will need to provide the following information during Edge Gateway creation for your primary and secondary HA Edge Gateways.

WAN Interface

Description

Interface CIDR

The CIDR for the WAN interface.

Interface CIDR must be in the format interface_ip/netmask (for example, 192.18.20.1/24).

Default Gateway IP

The Default Gateway IP address for the WAN interface.

For CSP underlay, this is the remote side IP address of the BGP session on CSP VNG or VGW.

If Link-Local Underlay CIDR is configured, the Default Gateway IP should be in the same subnet as the Link-Local Underlay CIDR, otherwise, it should be in the same subnet as the WAN Interface CIDR.

Public IP

The public IP for the WAN interface.

The public IP of the WAN interface is used for peering connections over the public network.

LAN Interface

Description

Interface CIDR

The native VLAN interface IP address.

This interface is where untagged packets are sent.

Default Gateway IP

The Default Gateway IP address for the native VLAN interface.

VRRP Gateway IP

The Virtual IP for the VRRP Gateway, when VRRP is enabled.

Not required if not using Virtual Router Redundancy Protocol (VRRP).

VLAN ID

The VLAN ID of the VLAN segment.

VLAN ID must be a number between 2 and 4092.

VLAN Interface CIDR

The VLAN IP address of the VLAN segment.

Default Gateway IP

The Default Gateway IP address of the VLAN segment.

MGMT Interface Description

IP Assignment

The MGMT interface defaults to DHCP.

This setting cannot be changed.

The Edge Gateway will automatically NAT out of the physical MGMT interface of the edge node when using the Aviatrix Edge platform.

Private Network

Leave this setting to Off.

The Edge Gateway on the edge hardware requires public Internet reachability to connect to the Aviatrix Controller and Aviatrix Edge infrastructure in the cloud.

Egress CIDR (Primary)

The Egress CIDR is the public IP address which the Management interface uses.

If the Public IP is used from Edge Gateway Management interface to establish connectivity to Aviatrix Controller, then configure the Public IP as the CIDR. The CIDR is then added to the Controller security group to allow incoming traffic from the Edge Gateway.

Egress CIDR (Secondary)

The Egress Public IP for the secondary Edge Gateway’s Management interface when High Availability is configured.

3. Provide Network Access

Aviatrix Edge Spoke Gateway requires outbound access to communicate with the Aviatrix Platform. You must allow access on the specified ports on your firewall.

For all Edge gateway outbound access requirements, see Aviatrix Products: Required Access for External Sites on the Aviatrix Customer Support website.

Deploy an Edge Spoke Gateway

You can deploy an Edge Spoke Gateway on the Dell edge device once the device is onboarded and registered with the Aviatrix Edge Platform. The Dell device will show as Connected in Copilot (go to Cloud Fabric > Hybrid Cloud > Devices).

edge device connected

Follow the instructions in Edge Spoke Gateway Deployment Workflow for On-Premises to deploy the primary and secondary highly available (HA) Edge Spoke Gateways.