- Newest
- Most votes
- Most comments
Hi there,
Since you're using BGP routing based VPN, please have different Local Preference and different AS PATH Pre-pending for each of the BGP neighbor.
Local Preference helps on premise Customer Gateway to choose the tunnel to exit from the local network while exporting routes with AS PATH pre-pending makes a particular path 'less preferred'/'secondary' for the peer(s) receiving the route.
eg) AS Number on CGW: 65270
VPN-ABC
Tunnel 1 - Local Preference: 500 | AS PATH : 65270
Tunnel 2 - Local Preference: 400 | AS PATH : 65270 65270
VPN-XYZ
Tunnel 3 - Local Preference: 300 | AS PATH : 65270 65270 65270
Tunnel 4 - Local Preference: 200 | AS PATH : 65270 65270 65270 65270
The above configuration would make Customer Gateway and AWS VPN to choose the routing tunnel in the following manner based on tunnel availability:
Tunnel 1 > Tunnel 2 > Tunnel 3 > Tunnel 4
I hope you find this information useful.
Relevant content
- AWS OFFICIALUpdated 2 years ago
- AWS OFFICIALUpdated 10 months ago
- AWS OFFICIALUpdated a year ago