AWS Direct Connect

3y ago
37 Views
2 Downloads
1.67 MB
162 Pages
Last View : 15d ago
Last Download : 3m ago
Upload by : Giovanna Wyche
Transcription

AWS Direct ConnectUser GuideAWS Direct Connect: User GuideCopyright Amazon Web Services, Inc. and/or its affiliates. All rights reserved.

AWS Direct Connect User GuideAmazon's trademarks and trade dress may not be used in connection with any product or service that is notAmazon's, in any manner that is likely to cause confusion among customers, or in any manner that disparages ordiscredits Amazon. All other trademarks not owned by Amazon are the property of their respective owners, who mayor may not be affiliated with, connected to, or sponsored by Amazon.

AWS Direct Connect User GuideTable of ContentsWhat is AWS Direct Connect? . 1AWS Direct Connect components . 1Network requirements . 2Pricing for AWS Direct Connect . 2Accessing a remote AWS Region . 3Accessing public services in a remote Region . 3Accessing VPCs in a remote Region . 3Network-to-Amazon VPC Connectivity Options . 3Routing policies and BGP communities . 3Public virtual interface routing policies . 4Public virtual interface BGP communities . 4Private virtual interface and transit virtual interface routing policies . 5Private virtual interface routing example . 6Using the AWS Direct Connect Resiliency Toolkit to get started . 8Prerequisites . 9Maximum resiliency . 10Step 1: Sign up for AWS . 12Step 2: Configure the resiliency model . 12Step 3: Create your virtual interfaces . 13Step 4: Verify your virtual interface resiliency configuration . 16Step 5: Verify your virtual interfaces connectivity . 16High resiliency . 17Step 1: Sign up for AWS . 18Step 2: Configure the resiliency model . 18Step 3: Create your virtual interfaces . 19Step 4: Verify your virtual interface resiliency configuration . 23Step 5: Verify your virtual interfaces connectivity . 23Development and test . 23Step 1: Sign up for AWS . 23Step 2: Configure the resiliency model . 24Step 3: Create a virtual interface . 24Step 4: Verify your virtual interface resiliency configuration . 28Step 5: Verify your virtual interface . 28Classic . 28Prerequisites . 29Step 1: Sign up for AWS . 29Step 2: Request an AWS Direct Connect dedicated connection or accept a hosted connection . 29(Dedicated connection) Step 3: Download the LOA-CFA . 31Step 4: Create a virtual interface . 32Step 5: Download the router configuration . 35Step 6: Verify your virtual interface . 36(Recommended) Step 7: Configure redundant connections . 36AWS Direct Connect Failover Test . 37Test History . 38Validation Permissions . 38Starting the virtual interface failover test . 38Viewing the virtual interface failover test history . 39Stopping the virtual interface failover test . 39MAC Security . 40MACsec concepts . 40Supported connections . 40Get started with MACsec on dedicated connections . 40MACsec prerequisites . 41Service-Linked roles . 41iii

AWS Direct Connect User GuideMACsec pre-shared CKN/CAK key considerations .Step 1: Create a connection .(Optional) Step 2: Create a link aggregation group (LAG) .Step 3: Associate the CKN/CAK with the connection or LAG .Step 4: Configure your on-premises router .Step 5: (Optional) Remove the association between the CKN/CAK and the connection or LAG .Connections .Dedicated connections .Hosted connections .Create a connection .Download the LOA-CFA .View your connection details .Update a connection .Associate a MACsec CKN/CAK with a connection .Remove the association between a MACsec secret key and a connection .Delete connections .Accept a hosted connection .Cross connects .Africa (Cape Town) .Asia Pacific (Mumbai) .Asia Pacific (Seoul) .Asia Pacific (Singapore) .Asia Pacific (Sydney) .Asia Pacific (Tokyo) .AWS GovCloud (US-East) .AWS GovCloud (US-West) .Canada (Central) .China (Beijing) .China (Ningxia) .Europe (Frankfurt) .Europe (Ireland) .Europe (Italy) .Europe (London) .Europe (Paris) .Europe (Stockholm) .Middle East (Bahrain) .Middle East (Israel) .South America (São Paulo) .US East (Ohio) .US East (N. Virginia) .US West (N. California) .US West (Oregon) .Virtual interfaces .Public virtual interface prefix advertisement rules .Hosted virtual interfaces .Prerequisites for virtual interfaces .Create a virtual interface .Create a public virtual interface .Create a private virtual interface .Create a transit virtual interface to the Direct Connect gateway .Download the router configuration file .View virtual interface details .Add or delete a BGP peer .Add a BGP peer .Delete a BGP peer .Set network MTU for private virtual interfaces or transit virtual interfaces .Add or remove virtual interface tags 66768697070717172

AWS Direct Connect User GuideDelete virtual interfaces . 73Create a hosted virtual interface . 73Create a hosted private virtual interface . 73Create a hosted public virtual interface . 74Create a hosted transit virtual interface . 75Accept a hosted virtual interface . 76Migrate a virtual interface . 77LAGs . 78MACsec considerations . 79Create a LAG . 79View your LAG details . 80Update a LAG . 81Associate a connection with a LAG . 82Disassociate a connection from a LAG . 83Associate a MACsec CKN/CAK with a LAG . 83Remove the association between a MACsec secret key and a LAG . 84Delete LAGs . 84Working with Direct Connect gateways . 86Direct Connect gateways . 86Virtual private gateway associations . 86Virtual private gateway associations across accounts . 87Transit gateway associations . 87Transit gateway associations across accounts . 88Creating a Direct Connect gateway . 89Deleting Direct Connect gateways . 89Migrating from a virtual private gateway to a Direct Connect gateway . 89Virtual private gateway associations . 90Creating a virtual private gateway . 91Associating and disassociating virtual private gateways . 91Creating a private virtual interface to the Direct Connect gateway . 92Associating a virtual private gateway across accounts . 93Transit gateway associations . 96Associating and disassociating transit gateways . 96Creating a transit virtual interface to the Direct Connect gateway . 97Associating a transit gateway across accounts . 99Allowed prefixes interactions . 101Virtual private gateway associations . 101Transit gateway associations . 102Example: Allowed to prefixes in a transit gateway configuration . 102Tagging resources .

Create a virtual interface to enable access to AWS services. A public virtual interface enables access to public services, such as Amazon S3. A private virtual interface enables access to your VPC. For more information, see AWS Direct Connect virtual interfaces (p. 54) and Prerequisites for virtual interfaces (p. 56). Network requirements To use AWS Direct Connect in an AWS Direct Connect .

Related Documents:

4 AWS Training & Services AWS Essentials Training AWS Cloud Practitioner Essentials (CP-ESS) AWS Technical Essentials (AWSE) AWS Business Essentials (AWSBE) AWS Security Essentials (SEC-ESS) AWS System Architecture Training Architecting on AWS (AWSA) Advanced Architecting on AWS (AWSAA) Architecting on AWS - Accelerator (ARCH-AX) AWS Development Training

AWS SDK for JavaScript AWS SDK for JavaScript code examples AWS SDK for .NET AWS SDK for .NET code examples AWS SDK for PHP AWS SDK for PHP code examples AWS SDK for Python (Boto3) AWS SDK for Python (Boto3) code examples AWS SDK for Ruby AWS SDK for Ruby co

2.AWS Direct Connect location (DX POP) — Work with a partner in the AWS Direct Connect Partner Program to help you establish network circuits between an AWS Direct Connect POP and your data center, office, or colocation environment. The Partner can also help provide collocation space within the same facility as the POP location.

AWS Directory Amazon Aurora R5 instance Service AWS Server Migration Service AWS Snowball AWS Deep Amazon GameLift Learning AMIs AWS CodeBuild AWS CodeDeploy AWS Database Migration Service Amazon Polly 26 26 20 40 12 0 5 10 15 20 25 30 35 40 45 2018 Q1 2018 Q2 2018 Q3 2018 Q4 2019 Q1 New Services& Features on AWS

AWS instances with Nessus while in development and operations, before publishing to AWS users. Tenable Network Security offers two products on the AWS environment: Nessus for AWS is a Nessus Enterprise instance already available in the AWS Marketplace. Tenable Nessus for AWS provides pre-authorized scanning in the AWS cloud via AWS instance ID.

BSR/AWS B5.16-200x, Specification for the Qualification of Welding Engineers (revision of ANSI/AWS B5.16-2001) Obtain an electronic copy from: roneill@aws.org Order from: R. O’Neill, AWS; roneill@aws.org Send comments (with copy to BSR) to: Andrew Davis, AWS; adavis@aws.org; roneill@aws.org Single copy price: 25.00

pa/1g pa/1f pb/2f pc/2g pd/4f 156 pf/3g pf/3f pg/3g pg/3f en: pcfileur welding positions aws: 1g en: pa aws: 1f aws: 2g en: pc aws: 2f en: pb aws: 3g en: pg down en: pf up aws: 3f down en: pf aws: 4g en: pe aws: 4f en: pd 156

Astrodienst Ephemeris Tables for the year 1993 tropical zodiac contains Sun, Moon, Mercury, Venus, Mars, Jupiter, Saturn, Uranus, Neptune, Pluto, True Node, Moon's .