You can create a VPN tunnel between an organization vDC network that is backed by edge gateway and another organization vDC in the same organization.

System administrators and organization administrators can create VPN tunnels.

If a firewall is between the tunnel endpoints, you must configure it to allow the following IP protocols and UDP ports:

IP Protocol ID 50 (ESP)

IP Protocol ID 51 (AH)

UDP Port 500 (IKE)

UDP Port 4500

Verify that you have at least two routed organization vDC networks in the organization. One of these networks must be backed by the edge gateway. Both organization vDC networks must have VPN enabled.


Click the Manage & Monitor tab and click Organization vDCs in the left pane.


Double-click the organization vDC name to open the organization vDC.


Click the Edge Gateways tab, right-click the edge gateway name. and select Edge Gateway Services.


Click the VPN tab and click Add.


Type a name and optional description.


Select a network in this organization from the drop-down menu and select local and peer networks.


Review the tunnel settings and click OK.

vCloud Director configures both peer network endpoints.