Hub and spoke VPN topology
A hub and spoke VPN topology is a network architecture that
-
connects a central endpoint (hub node) with multiple remote endpoints (spoke nodes)
-
establishes each connection between the hub node and an individual spoke endpoint as a separate VPN tunnel, and
-
enables hosts behind any of the spoke nodes to communicate with each other through the hub node.
The hub and spoke topology commonly represent a VPN that connects an organization's main and branch office locations using secure connections over the Internet or other third-party network. These deployments provide all employees with controlled access to the organization's network. Typically, the hub node is located at the main office. Spoke nodes are located at branch offices and start most of the traffic.
This diagram displays a typical hub and spoke VPN topology.