Deploying FlexEdge Secure SD-WAN Engines on cloud-based virtualization platforms

You can deploy Secure SD-WAN Engines on cloud-based virtualization platforms, such as the Amazon Web Services (AWS) cloud and the Microsoft Azure cloud.

Secure SD-WAN Engines on cloud-based virtualization platforms provide VPN connectivity, access control, and inspection for services hosted on cloud-based virtualization platforms.

For information about deploying Secure SD-WAN Engines in the AWS cloud, see the document How to deploy FlexEdge Secure SD-WAN in the Amazon Web Services cloud and Knowledge Base article 10156.

For information about deploying Secure SD-WAN Engines in the Azure cloud, see the document How to deploy FlexEdge Secure SD-WAN in the Azure cloud and Knowledge Base article 14485.

After deployment, you can manage Secure SD-WAN Engines on cloud-based virtualization platforms using the Management Client in the same way as other Secure SD-WAN Engines. If you deploy Secure SD-WAN Engines that use the scaling feature, you can only preview the Secure SD-WAN Engines and make changes to the Engine policies.

Note: Only Single Secure SD-WAN Engines in the Engine/VPN role are supported. Master Engines and Virtual Engines are not supported.

Licensing

Two licensing models are supported.
  • Bring Your Own License — You pay only the AWS or Azure standard runtime fee for the Secure SD-WAN Engine instance. You must install a license for the Secure SD-WAN Engine in the SMC.
  • Hourly (pay as you go license) — You pay the AWS or Azure standard runtime fee for the Secure SD-WAN Engine instance plus an hourly license fee based on the runtime of the Secure SD-WAN Engine. No license installation is needed for the Secure SD-WAN Engine in the SMC.

For features that require separate licenses, the SMC automatically detects which licensing model the Secure SD-WAN Engine uses.