Site to Site IPSec VPN to multiple on-prem firewalls
I was told that to establish the above IPSec VPN over Internet, the AWS firewall can't achieve the above, and will require to buy some NGNBN on the marketplace to establish the IPSec VPN.
Is that true?
Not sure exactly what you are trying to achieve, but here are some example architecture that may be of use: https://docs.aws.amazon.com/vpn/latest/s2svpn/vpn-redundant-connection.html https://docs.aws.amazon.com/vpn/latest/s2svpn/your-cgw.html
It would be good to know why you want to establish multiple VPN sessions. It could be for redundancy; or you might want to do it to connect to multiple different locations/offices.
In either case, the site-to-site VPN service only supports connecting to a single "location". Each connection can have two customer-side endpoints (so you can use two firewalls for redundancy) but the destination (from a network perspective) for both tunnels must be the same - you can't use one tunnel to connect to office A and another to connect to office B.
If you do have multiple destinations/locations/offices then you will need to create multiple connections in the site-to-site VPN service - this is totally supported. In that case they would all need to have unique network ranges that you are routing to - but that would generally be the case anyway.
AWS Transit Gateway Site-to-Site VPN Dynamic routes limit of 100. Is it per Connection or Aggregate?Accepted AnswerEXPERTasked 2 years ago
Site to Site VPN Issueasked 2 months ago
Can I delete one VPN tunnel from site-to-site VPN connection ?asked 3 months ago
Does VPC need to be updated if client is changing VPN settings?asked a month ago
Conflict between AWS site-to-site VPN (to a VPC) and non-AWS client VPNasked 2 years ago
Terminate each Site-to-Site VPN Tunnels to Multiple Customer GatewaysAccepted Answerasked 2 years ago
Site to Site IPSec VPN to multiple on-prem firewallsasked 4 months ago
Route all traffic from on-premise network to AWS VPC via IPSec site-to-siteasked 3 years ago
Advice on creating VPC for EC2 to use IPSec connectionasked 2 months ago
AWS Transit Gateway with Cisco ASA Routing Issuesasked a year ago