VXLAN- VTEP security

how to secure or encrypt traffic flows over VXLAN from a DC to DC

Although VXLAN does not have the ability to provide for Secure communications, you do have the ability to use an IPSec device to encrypt the traffic between the VTEPs.

There is a short blog on Cisco’s website that you can also read up on. (https://blogs.cisco.com/datacenter/multi-site-data-center-networking-with-secure-vxlan-evpn-and-cloudsec).


so you mean you need a firewall between VTEP on both end?