SD-WAN
(→Networks) |
|||
Line 29: | Line 29: | ||
== Client Settings == | == Client Settings == | ||
+ | |||
+ | In WFilter NGF, you can join SD-WAN networks in the "VPN"->"SD-WAN" module. | ||
+ | * SD-WAN secret: SD-WAN client id | ||
+ | * Zone: zone firewall ACL rules are applied. Please check [[firewallrule|Firewall Rules]] | ||
+ | |||
+ | [[File:sdwan_client01.png|800px]] | ||
+ | |||
+ | [[File:sdwan_client02.png|800px]] | ||
+ | |||
+ | [[File:sdwan_client03.png|800px]] | ||
+ | |||
+ | Client is denied by default, you also need to authorize clients in the server side. | ||
+ | |||
+ | [[File:sdwan_client04.png|450px]] | ||
== Cross-Platform clients == | == Cross-Platform clients == |
Revision as of 16:13, 6 July 2025
Contents |
1 SD-WAN
SD-WAN is an integration of the ZeroTier networking. With SD-WAN, you are able to:
- Network virtualization: setup SD-WAN subnets and join multiple devices/networks together.
- End-to-End encryption
- Setup VPN without a static public IP address.
2 Server Settings
Server settings of WFilter SD-WAN can be accessed in WFilter Cloud Service.
2.1 Networks
Click "New network" to create a new sdwan subnet.
- Net ID: SD-WAN network id
- Net Name: network description
- Start/End IP: DHCP IP address range
To join multiple networks together, you need to setup routing policies. As shown below, network "192.168.1.0/24" can be reached via "10.200.188.1", while network "192.168.2.0/24" can be reached via "10.200.188.2". So these two networks are reachable from each side.
3 Client Settings
In WFilter NGF, you can join SD-WAN networks in the "VPN"->"SD-WAN" module.
- SD-WAN secret: SD-WAN client id
- Zone: zone firewall ACL rules are applied. Please check Firewall Rules
Client is denied by default, you also need to authorize clients in the server side.
4 Cross-Platform clients
WFilter's SD-WAN networks are compatible with ZeroTier clients, and you may download clients for other operating systems here: zerotier download