The equipment at a branch, typically an SD-WAN appliance or router, through which that site connects into a Virtual WAN hub; stands for customer premises equipment.
Also called customer premises equipment.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains CPE in context, with comparison tables and the common traps.
Terms in this definition
- SD-WAN
Software-defined WAN. A vendor's overlay connects branches over more than one transport and chooses paths centrally; in Virtual WAN, the tunnels end on an SD-WAN NVA inside the hub instead of Microsoft's own VPN or ExpressRoute gateways.
- LSDOU
The sequence in which Group Policy is processed: the local policy first, followed by site, domain and organisational unit policies. The nearest, last-processed setting takes effect unless Enforced or Block Inheritance alters that.
- Virtual WAN
A networking service built around hubs that Microsoft manages. The Basic type handles only site-to-site VPN; Standard brings in ExpressRoute, point-to-site and full transit.
- Virtual hub
Inside a Virtual WAN, a VNet managed by Microsoft that contains the hub router plus the VPN, ExpressRoute and User VPN gateways. Typically there is one per region, but several hubs can share a region.
Related terms
- Remote network
Connects a whole branch office, via IPsec with BGP from its customer premises equipment, so every device at that site is protected by Global Secure Access with no client to install.
- SD-WAN NVA
NVA deployed inside a Virtual WAN hub as integrated connectivity. Branch CPE devices build their vendor SD-WAN tunnels to it, and it peers with the hub router over BGP to share routes.