Configure Internet Ports
Configure the internet ports to receive inbound VPN connections
from the internet.
The Prisma SD-WAN ION 9000 uses the internet
ports to receive inbound VPN connections from the internet. Typically,
ION 9000 devices use one internet port per data center and this
port must be able to receive traffic from the internet.
The internet port must specifically allow inbound UDP 4500 to
the ION 9000 from remote ION devices. If a firewall or NAT is used
outside the ION 9000 on this port, UDP 4500 needs to be port forwarded
or passed-through from the firewall or NAT device.
To pre-cable the internet ports before configuration:
Plan the type and the number of ION 9000 ports needed
for VPN configuration.
Physically plug in the ports from the ION 9000 devices to
the appropriate devices.
Record the ION port numbers and connecting device port information
for future reference.