Auto VPN Configuration Enhancements for Large Enterprises
Auto VPN enhancements include new configuration settings for the link tag to secure
large enterprises and extended connectivity to 500 sites.
It is a complex and often difficult process
to add new sites and secure connectivity across all sites in distributed enterprises
that have firewalls at the edge of their network. Additionally, securing these
networks requires manual configuration that is time-consuming and prone to
misconfiguration.
With these Auto VPN configuration enhancements, you can
configure a link bundle that enables you to combine multiple physical links into one
virtual SD-WAN interface. These bundles provide multiple and more robust options for
path selection and failover protection that you can specify when you onboard a
next-generation firewall (NGFW) as a branch device in the VPN cluster using Prisma® Access as a hub.
With bundles that include more than one physical link, you maximize application quality
when a physical link deteriorates. Create a link bundle by assigning the same link
tag (using an SD-WAN Interface profile) to multiple links that have similar access
and SD-WAN policy rules. For example, you can create a link tag named Low Cost
Broadband and then use it to tag your cable modem and fiber optic broadband
services.
In addition to improving the Auto VPN configuration settings, we
extended Auto VPN connectivity to 500 sites per tenant.