> ## Documentation Index
> Fetch the complete documentation index at: https://docs.megaport.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Connecting to Salesforce Express Connect

> This help topic describes how to create a connection between Megaport and Salesforce Express Connect.

export const Image = ({src, alt = '', caption, width, height, shadow}) => {
  const errorPrefix = '\x1b[31;1;4mERROR\x1b[0m: Image -';
  if (typeof src !== 'string') {
    src = String(src);
  }
  if (!src || src === 'undefined') {
    console.error(`${errorPrefix} \`src\` is required — rendering an empty string instead`);
    return <></>;
  }
  const img = <img className={['mega-image-style', shadow ? 'shadow' : ''].join(' ')} src={src} alt={alt} width={width} height={height} style={{
    display: 'block'
  }} />;
  return caption ? <figure>
      {img}
      <figcaption style={{
    textAlign: 'center',
    width
  }}>{caption}</figcaption>
    </figure> : img;
};

export const Link = ({href, children}) => {
  const errorPrefix = '\x1b[31;1;4mERROR\x1b[0m: Link -';
  if (typeof href !== 'string') {
    href = String(href);
  }
  if (!href || href === 'undefined') {
    console.error(`${errorPrefix} the \`href\` property is required — rendering an empty string instead`);
    return <></>;
  }
  if (href.includes('{') || href.toUpperCase().includes('%7B')) {
    console.error(`${errorPrefix} could not resolve a variable in href "${href}" — rendering an empty string instead`);
    return <></>;
  }
  const isExternal = (/^https?:\/\//).test(href);
  return <a href={href} className="link" target={isExternal ? '_blank' : undefined} rel={isExternal ? 'noreferrer' : undefined}>
      {children ?? href}
      {isExternal && <span className="sr-only"> (opens in a new tab)</span>}
    </a>;
};

Salesforce Express Connect lets you access Salesforce applications and
services directly with a private, dedicated connection. When you create
a Salesforce Express Connect through the <Link href="https://portal.megaport.com">Megaport Portal</Link>:

* Express Connect is delivered as a Layer 3 routed service.
* You access Salesforce services using public IPs and are required to
  run BGP to receive Salesforce routes.
* Megaport allocates a /31 public IP range for each Salesforce
  peering.

Express Connect offers two IP addressing options:

* You can source NAT your LAN traffic to use the /31 public IP space
  provided by Megaport.\
  \--*or*--
* You can advertise your own public IP address space to Salesforce.
  (Salesforce will not accept RFC1918 routes.)

Deployment considerations:

* **Provisioning** -- One Virtual Cross Connect (VXC) provisions two
  logical connections to Salesforce using a Megaport Cloud Router
  (MCR). Salesforce has redundant routers which provide guaranteed
  uptime for both service locations.
* **Timeframe** -- Salesforce can take up to 2 business days for
  approval once a VXC is deployed from the Portal.
* **IP Addresses and ASN** -- Customers can use their own publicly
  registered IP space or Megaport will allocate a public /31 for the
  end user to peer directly with Salesforce. RFC 1918 private space is
  not allowed. Private and public ASNs are accepted.
* **Internet Backup** -- Although we always recommend two
  Ports for redundancy, an Express Connect over Megaport can be
  used for the primary connection to Salesforce and if you use
  publicly routed IP space and the single Port fails,
  routing to Salesforce can revert to the public Internet.

This image shows a common Express Connect deployment:

<Image src="/images/cloud/megaport/salesforce/salesforce-deployment.png" alt="Express Connect deployment" width={900} />

**To create a connection to Salesforce Express Connect**

1. In the <Link href="https://portal.megaport.com">Megaport Portal</Link>, go to the **Services** page and select the Port you want to use.\
   If you haven't already created a Port, see
   [Creating a Port](/connections/creating-port).

2. Add a VXC connection for the Port.\
   If this is the first connection for the Port, click the Salesforce
   tile. The tile is a shortcut to the configuration page.
   Alternatively, click **+Connection**, click **Cloud**, then click **Salesforce**.

3. Select Salesforce as the provider.
   <Image src="/images/cloud/megaport/salesforce/sfdc-dest-port.png" alt="Salesforce as provider" shadow={true} width={600} />

4. Select your destination Port and click **Next**.\
   You can use the Select Destination Port search field to narrow the selection. You can also filter by diversity zone.

5. Specify the connection details:

   * **Connection Name** -- The name of your VXC to be shown in the <Link href="https://portal.megaport.com">Megaport Portal</Link>.

   * **Service Level Reference** (optional) -- Specify a unique identifying number for your Megaport service to be used for billing purposes, such as a cost center number, unique customer ID, or purchase order number. The service level reference number appears for each service under the Product section of the invoice. You can also edit this field for an existing service.

   * **Rate Limit** -- The speed of your connection in Mbps. You can select any value starting from 1 Mbps, with maximum speeds depending on location and service availability.

   * **VXC State** -- Select **Enabled** or **Shut Down** to define the initial state of the connection. For more information, see [Shutting Down a VXC for Failover Testing](/connections/shut-down-vxc).

     <Note>
       If you select **Shut Down**, traffic will not flow through this service and it will behave as if it was down on the Megaport network. Billing for this service will remain active and you will still be charged for this connection.
     </Note>

   * **Preferred A-End VLAN** (optional) -- Specify a VLAN ID for this connection.\
     This must be a unique VLAN ID on this Port and can range from 2 to 4093. If you specify a VLAN ID that is already in use, the system displays the next available VLAN number. The VLAN ID must be unique to proceed with the order. If you don't specify a value, Megaport will assign one.

     Alternatively, you can select **Untagged** to remove the VLAN tagging for
     this connection. The untagged option limits you to only one VXC
     deployed on this Port.

     You must use untagged VLANs if you are creating a MACsec connection.

   * **Minimum Term** -- Select No Minimum Term, 12 Months, 24 Months, 36 Months, 48 Months, or 60 Months. Longer terms result in a lower monthly rate. *12 Months* is selected by default. Take note of the information on the screen to avoid early termination fees (ETF).

     Enable the [Minimum Term Renewal](/portal-admin/auto-renew/#auto-renew) option for services with a 12, 24, 36, 48 or 60-month term to automatically renew the contract at the same discounted price and term length at the end of the contract. If you don't renew the contract, at the end of the term,  the contract will automatically roll over to month-to-month contract for the following billing period, at the same price, without term discounts.

     For more information, see [VXC Pricing and Contract Terms](/finance/vxc-pricing) and [VXC, Megaport Internet, and IX Billing](/finance/billing-details).

   * **Resource Tags** -- You can use resource tags to add your own reference metadata to a Megaport service.\
     To add a tag:
     1. Click **Add Tags**.
     2. Click  **Add New Tag**.
     3. Enter details into the fields:
        * **Key** -- string maximum length 128. Valid values are a-z 0-9 \_ : . / \ -
        * **Value** -- string maximum length 256. Valid values are a-z A-Z 0-9 \_ : . @ / + \ - (space)
     4. Click **Save**.
        If you already have resource tags for that service, you can manage them by clicking **Manage Tags**.
     <Warning>
       Never include sensitive information in a resource tag. Sensitive information includes commands that return existing tag definitions and information that will identify a person or company.
     </Warning>

   <Image src="/images/cloud/megaport/port-cloud-create-details.png" alt="Connection details" shadow={true} width={500} />

6. Click **Next**.

7. Specify the connection details for the Salesforce service:

   * **ASN** -- Enter a private or public ASN.

   * **BGP Password** (optional) -- Specify the BGP Auth Key.

   * **Prefixes** -- Enter prefixes to announce to Salesforce -- RIR
     assigned IPv4 address ranges only. If you do not have public
     IP ranges, you can source NAT to the /31s IP provided by
     Megaport. If you are going to use the /31s IP provided by
     Megaport, you can leave this field blank.\
     Note: RFC 1918 space is not permitted.\
     Once configured, you cannot add new prefixes to the VXC.

   <Image src="/images/cloud/megaport/salesforce/sfdc-salesforce-service.png" alt="SFDC connection details" shadow={true} width={400} />

8. Click **Next**.\
   A summary page appears that includes the monthly cost. Click **Back** to
   make changes or click **Add VXC** to move this configuration to your
   cart. Once you have finished this configuration, you can configure
   additional VXCs or proceed through the checkout process.

   After you complete the checkout process, Salesforce can take up to 2
   business days to approve the connection request. The VXC status will be
   *Deployable* until Salesforce accepts the connection.

   <Image src="/images/cloud/megaport/salesforce/sfdc-vxc-deployable.png" alt="VXC status" shadow={true} width={700} />

   When Salesforce accepts the request, two logical and redundant
   connections are created from Salesforce.

   You can view and edit the details of your SEC connection by clicking the
   VXC and selecting Details.

9. Configure one BGP peering connection using the /31 IP addresses
   assigned by Megaport (outlined in red in the image below).\
   It is important to configure the IP address that has been assigned
   to you for the local interface as it has been automatically
   whitelisted on the SEC side. You will still be able to configure
   your own public prefixes for advertising across this link using the
   Megaport specific peering IP address.

   <Image src="/images/cloud/megaport/salesforce/sfdc-bgp-details.png" alt="BGP details for SFDC" shadow={true} width={500} />

## Helpful references

* [Salesforce Express Connect Product Page](https://www.salesforce.com/campaign/salesforce-express-connect/)
