Site 2 Cloud Flashcards
Site 2 Cloud connects to the following 5 things:
1 - On-Prem DCs 2 - Remote Branches 3 - Partners 4 - 5G 5 - IoT
BGP Route Approval reasons (2)
1 - Explicit approve any BGP learned route from partner to on-prem
2 - prevent unwanted advertisement of 0/0 (or other unwanted networks)
BGP Route Approval Process (5 steps
1 - New routes arrive a Transit GW
2 - Transit GW reports it to Controller
3 - Controller notifies admin via email
4 - Admin logs into controller to approve
5 - Once appcoved controller programs new routes to spoke vpcs
tenants of Shared Services Site2Cloud Multi-tenant Architecture
1- tenants not in our network
2 - onboarded using policy or route S2C with static routing landing on ActiveMesh spoke gateways
3 - Land in their own VPC’s/Spoke to handle overlapping IPs and provide local services
4 - Customized SNAT used to differentiate incoming overlapping tenant traffic
remote connections to on-prem are provided over:
DC Router/FW, Private IP (typically over DX/ER)
Mapped NAT with Route Based S2C requirements:
1 - virtual subnets which are defined to be unique
2 - S2C FW NATs betrween real subnets and virtual while preserving host IP
3 - no need for on-prem NAT
4 - no /32 NAT rules
5 - ROUTE based IPSEC required
6 - AWS, Azure, GCP available
Aviatrix Mapped / Route based S2C setup occurs with what controller configuration?
Remote Subnet (Real), Remote Subnet (Virtual) Local Subnet (Real), Local Subnet (Virtual)
Issues with Site2Cloud, run _______
Site2Cloud -> Diagnostics -> Run Analysis
To view logs with Site2Cloud , check _____-
Site2Cloud -> Diagnostics -> Show Logs
When using BGP, troublshooting is performed ______
Multi-Cloud Transit -> Advanced Config -> Diagnostics (show bgp ip)