Interconnecting Networks - Cloud Interconnect and peering Flashcards
Beside VPN what are other GSP services for connecting your infrastructure to Google’s network.
Cloud Interconnect and peering services
what types of these services are there
These services can be split into dedicated versus shared connections and Layer 2 versus Layer 3 connections.
layer 3 are: direct peering, carrier peering,
layer 2 are: dedicated Interconnect and Partner Interconnect.
What are dedicated services
Dedicated connections provide a direct connection to Google’s network, but shared connections provide a connection to Google’s network through a partner.
how is Dedicated Interconnect established
In order to use Dedicated Interconnect, you need to provision a cross connect
between the Google network and your own router in a common colocation facility, as. To exchange routes between the networks, you configure a
BGP session over the interconnect between the Cloud Router and the on-premisesrouter. This will allow user traffic from the on-premises network to reach GCP resources on the VPC network, and vice versa.
Dedicated Interconnect can be configured to offer a 99.9% or a 99.99% uptime SLA.
In order to use Dedicated Interconnect, your network must physically meet Google’s
network in a supported colocation facility.
if your data center is in a physical location that cannot reach a Dedicated Interconnect colocation facility ..
Than you use partner interconnect service providers have existing physical connections to Google’s network that
they make available for their customers to use. After you establish connectivity with aservice provider, you can request a Partner Interconnect connection from your service provider. Then, you establish a BGP session between your Cloud Router and on-premises router to start passing traffic between your networks via the service
provider’s network.
Partner Interconnect can be configured to offer a 99.9% or a 99.99% uptime SLA
Layer 2 connections
Layer 2 connections use a VLAN that pipes directly into your GCP environment providing connectivity to internal IP addresses in the RFC 1918 address base
Layer 3
Layer 3 connections provide access to G Suite services, YouTube, and Google Cloud API’s using public IP addresses.
How VPN helps with direct peering and carrier peering
VPN uses the public internet, but traffic is encrypted and provides access to internal IP addresses.
That’s why Cloud VPN is a useful addition to direct peering and carrier peering.
What type of connection all interconnecting networks provide
they provide internal IP access between resources in on premisses network and VPC google network
Capacity comparison
- ipsec VPN 1.5-3 gbps per tunel
- dedicated interconnect 10 gbps or 100 gbps per link
- partner interconnect 50 mbps - 10 gbps per connection
How is direct peering established
Direct peering with Google is done by exchanging BGP routes between Google and the peering entity.
After a direct peering connection is in place, you can use it to reach all the Google services, including the full suite of Google Cloud platform products.
Unlike dedicated interconnect, direct peering does not have an SLA.
For Direct peering you need to meat GCP’s Edge Points of Presence, or PoPs, are where Google’s network connects to the rest of the Internet via peering.
If you are not near googles Pops…
you can connect via a carrier peering partner.
Direct peering has a capacity
of 10 Gbps per link and requires you to have a connection in a GCP Edge Point of Presence.
which type of access peering connection provide
All of these options provide public IP address access to all of Google’s services.
How to chose connection to googles network
Ask yourself whether you need to extend your network for G Suite services, YouTube or Google Cloud APIs.
If you do, choose one of the peering services.
If you can meet Google’s direct peering requirements, choose direct peering.
Otherwise, choose carrier peering.
If you don’t need to extend your network for G Suite services or Google Cloud APIs but wantto extend the reach of your network to GCP, you want to pick one of the interconnect services.
If you cannot meet Google at one of its core location facilities, choose Cloud VPN or partner interconnect.