Isolated network space in NSX, made up of subnets that its own VPC gateway routes between. Each one belongs to an NSX project and gets external connectivity from a transit gateway.
Also called virtual private cloud.
Read more: Broadcom TechDocs
In the Ultra Transcenders books
Each book explains VPC in context, with comparison tables and the common traps.
Terms in this definition
- NSX
Software that handles networking and security across VCF, covering firewalling, load balancing, NAT, VPCs, overlay segments and Tier-0/1 gateways.
- NSX Project
Tenant-like boundary in NSX, keeping each group's network and security objects apart within a single deployment; VPCs sit inside one.
- External
API Management virtual network mode in which the gateway stays public but can call private back ends inside the VNet.
- transit gateway
Joins up a project's VPCs with each other and with outside networks in NSX, either in a distributed fashion on the hosts or centrally via a Tier-0 gateway running on an Edge cluster.
Related terms
- IP quota
Cap an organization admin in VCF Automation sets per VPC on use of external or private transit gateway IP blocks: how many single IPs and CIDRs, and the biggest subnet.
- Quick Start
One-off wizard, offered only before any tenant exists, that sets up a ready-made All Apps organisation in VCF Automation, with its VPC, transit gateway, quota, IP space, provider gateway and region, in a single run.
- VPC connectivity profile
Sets out in NSX how VPCs reach beyond their project: which transit gateway, which external IP blocks, and services like SNAT. Any VPC made through vCenter uses the default one.
- VPC Security Profile
Holds the default security settings for VPCs in NSX; out of the box, it switches on the gateway firewall for every VPC in the project.