Skip to main content
Cisco SD-WAN
Product Documentation
Viptela Documentation

ip secondary-address

vpn interface ip secondary-address—Configure secondary IPv4 addresses for a service-side interface (on vEdge routers only).

You can configure secondary addresses only on interfaces whose primary address is configured with the ip address command. You cannot configure secondary addresses on interfaces that learn their primary address from DHCP (configured with the ip dhcp-client command).

vManage Feature Template

For vEdge routers only:

Configuration ► Templates ► VPN Interface Bridge
Configuration ► Templates ► VPN Interface Ethernet

Command Hierarchy

vpn vpn-id  
  interface interface-name    
    ip secondary-address ipv4-address


IP Address
IPv4 address of the interface, in decimal four-part dotted notation. You can configure secondary IPv4 addresses for ge and irb interfaces in all VPNs except for VPN 0 and VPN 512. The address cannot be the same as the system IP address that is configured in VPN 0. You can configure up to four secondary IPv4 addresses per interface.


Configure one secondary IPv4 address:

vEdge# show running-config vpn 1 interface ge0/4
vpn 1
 interface ge0/4
  description "VPN 1 interface"
  ip address
  no shutdown

Release Information

Command introduced in Viptela Software Release 17.1.​

Additional Information

See the Segmentation CLI Reference article for your software release.
ip address
ip dhcp-client
ipv6 address
ipv6 dhcp-client

  • Was this article helpful?