Skip to content

Connect to Your Network Using a Site-to-Site VPN

Intro

Virtual Private Networks (VPNs) are one way for your Nautobot Cloud instances to connect securely to your company's network. This connectivity method is great for small to mid-sized customers with modest throughput requirements.


Network diagram of Nautobot cloud connectivity via VPN
Network diagram of Nautobot cloud connectivity via VPN
  • Pros

    Self-serve

    Fast setup

    Does not require an AWS Account

    Secure, encrypted connection

    VPN can be on-prem or cloud-based

  • Cons

    Less predictable performance, bandwidth, and latency

    Dependency on the public internet

    May not be suitable for SLA-level performance and compliance

Connect a VPN

To enable Virtual Private Network (VPN) access for your Nautobot Cloud instances, navigate to the Settings VPN tab in the left-hand navigation pane. This section shows a list of existing VPN configurations, if any.

List of VPNs

To create a new VPN configuration, click the Create button in the top-right corner of the VPN page. A dialog will appear with a form to fill out the details of your new VPN configuration.

Dialog prompting the user to create a VPN

If creation is successful, you will see it show up in the list of VPNs for your organization. You can view your VPN's configuration (YAML) by clicking on the terminal icon on the right of the newly created VPN.

List of VPNs showing the newly created one.

Fields

Field Required Description
Name Yes A human-readable name for the created VPN.
Nautobot Cloud CIDR (fixed) Auto The network block Nautobot Nautobot Cloud Instances will be provisioned with. This was created during onboarding and cannot be changed.
Your BGP ASN Yes The AS number that is configured on your gateway. This can be your public AS number (if assigned) or any in the private range (64,512–65,534).
Default value: 65000
Your VPN Endpoint Yes The public IP address of the VPN endpoint.
Your Prefixes Yes Prefixes that are allowed/advertised through the VPN. Multiple Prefixes can be entered by clicking "+ Add Another Prefix"

Further Reading

Get started with AWS Site-to-Site VPN (aws.amazon.com)