Configure the VTEP source interface
This task enables you to set up VXLAN network virtualization by configuring a Network Virtualization Endpoint (NVE) on your firewall device.
You can configure one VTEP source interface per Firewall Threat Defense device. The VTEP is defined as a Network Virtualization Endpoint (NVE). VXLAN is the default encapsulation type. An exception is made for clustering on the Firewall Threat Defense Virtual in Azure, where you can use one VTEP source interface for the cluster control link and a second one for the data interface connected to the Azure GWLB.
Procedure
Step 1 | If you want to specify a group of peer VTEPs, add a network object with the peer IP addresses. See Create a network object. |
Step 2 | Choose . |
Step 3 | Click Edit ( |
Step 4 | (Optional) Specify that the source interface is NVE-only. This setting is optional for routed mode where this setting restricts traffic to VXLAN and common management traffic only on this interface. This setting is automatically enabled for transparent firewall mode.
|
Step 5 | Click VTEP if it is not already displaying. |
Step 6 | Check Enable NVE. |
Step 7 | Click Add VTEP. |
Step 8 | Click OK. |
Step 9 | Click Save. |
What to do next
Configure the routed interface parameters. See Configure Routed Mode Interfaces.