View a markdown version of this page

SD-WAN Devices Integration with AWS Transit Gateway and AWS Direct Connect - Reference Architectures for Implementing SD-WAN Solutions on AWS

SD-WAN Devices Integration with AWS Transit Gateway and AWS Direct Connect

Publication date: December 28, 2024 (Diagram history)

This architecture shows how to use AWS Transit Gateway Connect attachments and AWS Direct Connect to extend and segment your SD-WAN traffic to AWS without adding extra infrastructure. Each Transit Gateway Connect Peer can have its own Transit Gateway Route Table and BGP peer to extend an on-premises VRF if required.

SD-WAN devices integration with AWS Transit Gateway and AWS Direct Connect architecture

Architecture diagram showing SD-WAN devices integration with AWS Transit Gateway Connect attachments and AWS Direct Connect using GRE tunneling over Direct Connect.

The following steps describe the AWS to on-premises traffic flow:

  1. Traffic initiated from an instance in the Spoke Amazon VPC A and destined to the corporate data center SD-WAN device is routed to the TGW ENI as per the Spoke Amazon VPC A Route Table.

  2. Traffic is forwarded to the Transit Gateway. As per the Spoke VPC route table, the traffic is routed to the corporate data center through the Transit Gateway Connect attachment.

  3. The Transit Gateway Connect attachment uses the Direct Connect connection as transport, and connects the Transit Gateway to the corporate data center SD-WAN device using GRE tunneling and BGP.

The following steps describe the on-premises to AWS traffic flow:

  1. Traffic from the corporate data center SD-WAN device destined to the Spoke VPC B is forwarded to the Transit Gateway through the GRE tunnel of the Transit Gateway attachment, over the Direct Connect link.

  2. As per the Transit Gateway Connect route table, the traffic is forwarded to the Spoke VPC B attachment.

  3. The TGW ENI of the Spoke VPC B forwards the traffic to the destination.

For more information about how to integrate your on-premises SD-WAN devices using AWS Transit Gateway and AWS Direct Connect, see Integrate SD-WAN devices with AWS Transit Gateway and AWS Direct Connect.

Further reading

For additional information, see the following resources:

Diagram history

To be notified about updates to this reference architecture diagram, subscribe to the RSS feed.

ChangeDescriptionDate

Initial publication

Reference architecture diagram first published.

December 28, 2024

Initial publication

Reference architecture diagram first published.

December 28, 2024

Initial publication

Reference architecture diagram first published.

December 28, 2024

Initial publication

Reference architecture diagram first published.

December 28, 2024

Initial publication

Reference architecture diagram first published.

December 28, 2024

Initial publication

Reference architecture diagram first published.

December 28, 2024

Initial publication

Reference architecture diagram first published.

December 28, 2024

Note

To subscribe to RSS updates, you must have an RSS plugin enabled for the browser you are using.