The Tier-0/1 Gateway is missing from the list of available gateways for the VPN service
search cancel

The Tier-0/1 Gateway is missing from the list of available gateways for the VPN service

book

Article ID: 417024

calendar_today

Updated On:

Products

VMware NSX

Issue/Introduction

  • While configuring the VPN Services, the Tier0/1 gateway is missing from the available gateway dropdown.

Environment

  • VMware NSX 4.1.2.x

Cause

  • Configuring the Tier-0/1 gateway in Active/Active or Distributed only mode causes the VPN services not allowing to add the gateway configured.
  • IPsec VPN service has already been provisioned on the specific Tier-0/1 Gateway.
  • T0/1 is not linked to an Edge Cluster, or if the Edge Nodes within that cluster are down or in a degraded state

Resolution

  • The Tier-0 or Tier-1 gateway must be in Active-Standby high-availability mode when used for an IPSec VPN service.
  • Please see the techdoc for more clarity on IPSec VPN configuration - virtual-private-network

Additional Information

Note - IPSec VPN session is not supported between a parent Tier-0 gateway and a Tier-0 VRF gateway that is attached to this parent Tier-0 gateway.