Configuring a site-to-site IPsec VPN
Whenever it comes to interconnecting your on-premises network to a Google Cloud VPC, you have an option of configuring a site-to-site IPsec VPN. This solution can provide an easy way to interconnect your networks while preserving information security. A site-to-site IPsec VPN requires a Cloud VPN in GCP and an IPsec gateway on the other side.
Remember
The maximum throughput you can reach with a site-to-site IPsec VPN is 3 gigabits per second.
There are three routing options, as outlined here:
- Dynamic routing: This uses Border Gateway Protocol (BGP).
- Route-based VPN: You only specific a list of remote IP ranges; those ranges are used only to create routes in your VPC network to peer resources.
- Policy-based routing: Local IP ranges and remote IP ranges are defined as part of the tunnel creation process.
You can see these routing options in the following screenshot: