3 - Transit Networking Flashcards

1
Q

5 focus areas for cloud networking

A
1 - Transit Network
2 - Connecting to Cloud Network
3 - Security:  NGFS + Internet
4 - Common Operations and Visibility
5 - End to End Correctness
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Name 3 layers of MCNA?

A

1 - Application Layer
2 - Transit Layer
3 - Access Layer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Criteria For Choosing Transit?

A

1 - well rounded architecture - centrally managed (no manual route table mgt, data-plane HA no scripting)
2 - Robust Connectivity
3 - Scale-out Repeatable architecture
4 - End-to-end network awareness
5 - Simplified service chaining (NGFW)
6 - Operational Visibility and troubleshooting

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

3 facets of Aviatrix Transit

A

1 - cloud native
2 - high performance
3 - encrypted trransit

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

With a software defined, cloud native control plane there is no _____. to manage

A

BGP

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

The highest encrypted thruput of aviatrix is. ____

A

75 Gbps

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

(true/false) You Must use a gateway in spoke VPCs/VNETs

A

False , but lose benefits

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Aviatrix transits repeatable backbone facets (3)

A

Inter-region
Intra-region
Inter-cloud

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

4 Principals of Cloud Network Archteicture

A

1 - Common control plane
2 - Distributed data plane
3 - repeatable design
4 - high speed multi region transit

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

5 areas of Cloud Networking

A
1 - SD Routing and BGP
2 - Route table Mgt
3 - Routes Approval and Filtering
4 - Traffic Engineering
5 - Overlapping IP Resolution
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

5 areas of Cloud Network Security

A
1 - Global network segmentation
2 - service insertion (secure egress)
3 - High Speed Encryption
4 - Private SaaS
5 - L4 Firewalls
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

3 design areas of Cloud Access

A

1 - DC, SD-WAN, Outpost/stack partners
2 - CloudWAN
3 - Remote User Access

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

3 areas of Cloud Network Operations

A

1 - multi account
2 - Day One - Automation, infra as code
3 - Day Two - visibility and troubleshooting

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

3 areas of Enhanced Native Services

A

1 - Guard Duty, Global Accelerator
2 - Private Link Encryption
3 - BGP Attribute overlay

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

In order to create primay and secondary transit paths, we use _____ to set values in _______

A

“Connection Based AS Path Prependding”

Prepend AS Path 65020 65013 -> longer AS path would be second

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

AWS TGW Route Limitation

A

100 BGP Routes

No VPC CIDR Summarization

17
Q

Azure UDR Route limitation

A

400 routes / table

18
Q

AWS Number of Transit Gateways in Region

A

5

19
Q

Site2Cloud performance in AWS and Azure

A

1.25Gbps

20
Q

Aviatrix out of box Site2Cloud performance

A

10Gbps

21
Q

True/False -> Do aws or azure offer transit end-to-end encryption

A

False