Background
A chain brand store aims to achieve data communication between its branches and headquarters through an SD-WAN network, ensuring seamless communication with the existing internal network segment 172.16.10.0/24.
Current Network Status
Store 1 (Branch): ER605. Cellular/WAN: 10.1.1.1, Subnet: 192.168.1.1/24
Store 2 (Branch): ER605. Cellular/WAN: 10.1.2.1, Subnet: 192.168.2.1/24
Headquarters (Center): ER2000-Plus. WAN Port Public IP: 10.1.1.1, Subnet: 192.168.4.1/24
Customer Internal Network: 172.16.10.0/24
Expected Outcome
Clients from Store 1 (192.168.1.1/24) and Store 2 (192.168.2.1/24) subnets can access the headquarters network (192.168.4.1/24). The entire SD-WAN network can communicate with the customer's existing internal network (172.16.10.0/24).
Prerequisites
1.The login account role must be System Administrator.
2.These three devices have already applied the
InCloud Manager Branch Professional Plan license. For application steps, please refer to:
Apply/Cancel License.
3.Devices are online.
1.Log in to InCloud Manager using the system administrator account.
2.Click Networks >> SD-WAN Overlay in the left menu bar.
3.Click Add.
4.Enter a Network Name, such as: Test.
5.Select the Tunnel Connection Type, such as: Cross interconnection.
6.Configure Organization and Forced Forwarding as needed.
Step 2: Add Hub Device
1.Click the Add button under the Hub section.
2.Select the Hub device from the dropdown.
3.Configure the following parameters for the hub device:
a. Tunnel Port: 500/4500.
b. Add Public IP Mapping for the WAN port: 10.1.1.1, and save.
c. Select Subnet: 192.168.4.1/24.
4.Click OK.
Note: If the subnet you need to configure in the SD-WAN is not displayed on the page, you can click the Edit button to add it in the device's Local Network List.
Step 3: Announce External Routes
Note: If you do not need to communicate with other networks, you can skip this step.
1.Edit the Subnet of the hub device to enter the configuration editing page.
2.Go to Services >> Static Routes.
3.Click Add.
4.Configure the customer's internal network.
5.Click Save and Commit Changes.
6.In the hub device editing window, check the configured route and save.
Step 4: Add Branch Devices
1.Click the Add button under the Branch Device section.
2.Select the branch device from the dropdown, such as Store 1, Store 2.
3.Configure the following parameters for the branch device:
a. You can configure the preferred hub as the headquarters device, but this example does not configure it.
b. Select Subnet: 192.168.1.1/24.
4.Click OK.
5.Follow the above steps to add other required branch devices. This example also adds a branch device with the subnet 192.168.2.1/24.
6.After adding the branch devices, click the Save button at the bottom left to successfully create an SD-WAN network.
Note: If the subnet you need to configure in the SD-WAN is not displayed on the page, you can click the Edit button to add it in the device's Local Network List.
Verification
After configuring the SD-WAN network, the system will automatically push the configuration to the devices.
You can check the tunnel establishment status between branch devices and the center device through the SD-WAN topology map.
FAQ
1. After adding a device to the SD-WAN network, a prompt appears: "Current license does not support this feature".
This error occurs when the device has no license or the license type is not InCloud Manager Branch Professional Plan. You need to go to the Subscriptions menu in InHand Cloud Service and apply the InCloud Manager Branch Professional Plan license for the device.
2. Unable to add a device to the SD-WAN network.
This is usually because the selected device does not currently support SD-WAN functionality. Currently, the supported device models for SD-WAN are: ER2000, ER815, ER805, ER605.
3. How to route all branch traffic through the preferred center device?
You need to:
1.Enable the Forced Forwarding feature in the SD-WAN network.
2.Edit the branch device and select the Preferred Hub.
3.Save the above configuration.