Kaspersky SD-WAN

Managing SD-WAN interfaces

April 17, 2024

ID 256480

SD-WAN interfaces are logical interfaces on top of the network interfaces of the CPE device and OpenFlow ports of the virtual switch, which form an additional level of abstraction. Each SD-WAN interface is mapped to a network interface by the network interface name and an OpenFlow port by the OpenFlow port number. The following types of SD-WAN interfaces are possible:

  • SD-WAN interfaces of the LAN type are SD-WAN interfaces mapped to network interfaces that are connected to the LAN. These interfaces are created by default and you cannot create or delete them. You can edit SD-WAN interfaces of the LAN type to specify the maximum speed and configure traffic queues.
  • SD-WAN interfaces of the WAN type are SD-WAN interfaces mapped to network interfaces that are connected to the WAN.
  • An SD-WAN interface of the management type is an SD-WAN interface mapped to a network interface that is used by the Zabbix monitoring system for passive monitoring of the CPE device, as well as by the orchestrator for connecting to the CPE device via SSH. This interface is created by default and you cannot delete it or create new interfaces. If you do not want to use the SD-WAN interface of the management type, you can disable it.

The table of SD-WAN interfaces is displayed in the CPE template and on the device:

  • To display the table of SD-WAN interfaces in a CPE template, go to the SD-WAN → CPE templates menu section, click the template, and in the displayed settings area, select the SD-WAN settings → Interfaces tab.
  • To display the table of SD-WAN interfaces on a CPE device, go to the SD-WAN → CPE menu section, click the device, and in the displayed settings area, select the SD-WAN settings → Interfaces tab.

Information about SD-WAN interfaces is displayed in the following columns of the table:

  • Type is the type of the SD-WAN interface:
    • WAN
    • LAN
    • Management
  • Inherited indicates whether the SD-WAN interface is inherited from the CPE template:
    • Yes
    • No

    This column is displayed only on the CPE device.

  • Port is the OpenFlow port number.
  • Alias is the name of the network interface.
  • Maximum rate is the maximum speed of the SD-WAN interface in Mbps.

Additional information about WAN checks to which SD-WAN interfaces of the WAN type are connected is displayed in the following columns of the table:

  • IP for tracking are the IP addresses of hosts for checking WAN availability.
  • Reliability is the minimum number of successful checks that makes the WAN available.
  • Count is the number of requests to hosts within one WAN check.
  • Timeout is time to wait for a response from hosts, in milliseconds.
  • Interval is the WAN check interval in seconds.
  • Down is the number of unsuccessful checks that makes the WAN unavailable.
  • Up is the number of successful checks that makes the WAN available.
  • Speed monitoring indicates whether the speed of the SD-WAN interface of the WAN type is being measured:
    • Yes
    • No

In this section

About sending information about SD-WAN interfaces of the WAN type to the controller

About overriding the IP address and port for connecting an SD-WAN interface of the WAN type to the controller

Packet fragmentation

Creating an SD-WAN interface of the WAN type

Editing an SD-WAN interface of the WAN type

Editing an SD-WAN interface of the LAN type

Disabling or enabling an SD-WAN interface

Removing an SD-WAN interface of the WAN type

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.