SD-WAN Edge won't form tunnels to Hub due to authentication mismatch.
search cancel

SD-WAN Edge won't form tunnels to Hub due to authentication mismatch.

book

Article ID: 333933

calendar_today

Updated On:

Products

VMware VMware SD-WAN by VeloCloud

Issue/Introduction

Symptoms:
Paths will not form between SD-WAN edges in a Hub and Spoke setup.

Environment

VMware SD-WAN
VMware SD-WAN by VeloCloud

Resolution

This is an expected behavior. When authentication mode is configured as "certificate disabled" on hub and "certificate optional" on edge, they will not form the VCMP tunnel.

Erroneous configuration Example:

Hub Edge


 

Spoke Edge:


 

For valid certificate configurations on hub and edge check this compatibility matrix: