1. 程式人生 > >Control the Routes Advertised and Received with AWS Direct Connect

Control the Routes Advertised and Received with AWS Direct Connect

Direct Connect supports a range of Border Gateway Protocol (BGP) community tags to help control the scope (regional, continent, or global) of routes advertised and received over a public VIF.

Direct Connect BGP community tags that AWS advertises to your customer gateway device over the public VIF include:

  • 7224:8100—Routes that originate from the AWS Region where the Direct Connect point of presence is located.
  • 7224:8200—Routes that originate from the continent where the Direct Connect point of presence is located.
  • No tag—Global (all public AWS Regions).

If you have a public VIF in the us-east-1 region, AWS advertises the routes associated for public resources in us-east-1 region with a community tag of 7224:8100. For routes for public resources in North America, AWS advertises the routes with a community tag of 7224:8200. For all other prefixes, there is no tag.

Direct Connect BGP community tags that you can use to select the scope of your prefixes to AWS:

  • 7224:9100—Local AWS Region where the Direct Connect point of presence is located.
  • 7224:9200—All AWS regions for the continent (for example, North America) where the Direct Connect point of presence is located.
  • 7224:9300 or no tag—Global (all public AWS Regions).

If you have a public VIF in the us-east-1 region, you can limit the scope of the routes you advertise to us-east-1 region with the community tag of 7224:9100. If you tag your routes with the community tag of 7224:9200, your prefixes are advertised to all US regions (North America continent). If you tag your routes with the community tag of 7224:9300, or if you do not tag your prefixes with a community tag, your prefixes will be advertised to all AWS Regions.

For example, to limit the routes received and advertised over the public VIF to a specific local region, make sure you configure a prefix filter and a route map that matches the routes received from AWS with the community tag of 7224:8100, and then install only those routes. You also must advertise your prefixes to AWS with a community tag of 7224:9100. This will make sure that the routes received and advertise over the public VIF are limited to the local region.

You can use any combination of the community tags to control the routes advertised and received over an AWS public VIF.

For the current list of prefixes advertised by AWS, download the AWS JSON IP Address Ranges. For more information, see AWS IP Address Ranges.

Note: Check your vendor documentation to configure prefix filters, route map commands, or BGP configuration settings specific to your network device.

相關推薦

Control the Routes Advertised and Received with AWS Direct Connect

Direct Connect supports a range of Border Gateway Protocol (BGP) community tags to help control the scope (regional, continent, or global) of r

timedatectl — Control the system time and date

symlink including see services specified -m cte alter machine timedatectl --help 的執行結果如下: timedatectl [OPTIONS...] COMMAND ... Query or

AWS Direct Connect resources

Amazon Web Services is Hiring. Amazon Web Services (AWS) is a dynamic, growing business unit within Amazon.com. We are currently hiring So

AWS Direct Connect Getting Started

AWS Direct Connect enables you to directly interface your on-premises network with a device at an AWS Direct Connect location. The following proce

Transfer Ownership of an AWS Direct Connect Connection

Amazon Web Services is Hiring. Amazon Web Services (AWS) is a dynamic, growing business unit within Amazon.com. We are currently hiring So

AWS Direct Connect Partners

The APN Technology and Consulting Partners (formerly called AWS Direct Connect Solution Providers) listed on this page can assist you in using the

AWS Direct Connect Frequently Asked Questions

Q. What is Direct Connect Gateway? Direct Connect Gateway is a grouping of Virtual Private Gateways (VGWs) and Private Virtual Interface

Provision an AWS Direct Connect Connection

Amazon Web Services is Hiring. Amazon Web Services (AWS) is a dynamic, growing business unit within Amazon.com. We are currently hiring So

Configure VPN as a Backup for an AWS Direct Connect Connection

Amazon Web Services is Hiring. Amazon Web Services (AWS) is a dynamic, growing business unit within Amazon.com. We are currently hiring So

AWS Direct Connect features

AWS Direct Connect is available at locations around the world. In some campus settings, AWS Direct Connect is accessible via a standard cross-co

AWS Direct Connect Partner Bundles

Companies of all sizes use AWS Direct Connect to establish private connectivity between AWS and datacenters, offices, or colocation environments.

AWS Direct Connect Pricing

Data transfer IN is $0.00 per GB in all locations. Data Transfer OUT pricing is dependent on the source AWS Region and AWS Direct Connect

AWS Direct Connect | AWS

すべてのロケーションで、データインは 0.00 USD/GB です。 データ送信の料金は、送信元の AWS リージョンと AWS Direct Connect のロケーションによって異なります。以下の該當する區分から AWS Direct Connect のロケーションを選択

全新 – AWS Direct Connect 閘道器 – 跨區域 VPC 訪問

準備寫這篇文章時,我回顧了一下 2012 年當我們推出 AWS Direct Connect 時我寫過的部落格文章。應企業客戶的要求,我們建立了 Direct Connect 讓他們建立到 AWS 區域的專用連線,以追求更高的私密性、更多資料傳輸頻寬和更易預測的資料傳輸效能。從開始時的一個

AWS Direct Connect網路連線服務_AWS網路服務

AWS Direct Connect 是一種雲服務解決方案,讓您可以輕鬆建立從本地通往 AWS 的專用網路連線。您可以利用 AWS Direct Connect 建立私有連線,將 AWS 與資料中心、辦公室或主機託管環境相連。在多數情況下,這樣可以降低網路成本、提高頻寬流量,提供比基於 In

AWS Direct Connect價格_AWS雲私有網路連線服務費用

所有站點均無資料傳入費。 資料傳出定價取決於源 AWS 區域和 AWS Direct Connect 站點。請從下列相關部分選擇 Direct Connect 站點,以便了解資料從 AWS 區域傳出到 AWS Direct Connect 站點的定價(單位:USD/GB),或

[Nuxt] Setup a "Hello World" Server-Rendered Vue.js Application with the Vue-CLI and Nuxt

clas red eat side pre obj sta ted blog Install: npm install -g vue-cli Init project: vue init nuxt/starter . Run: n

Flying with the nature, wanton and for

SpringMVC工作原理 SpringMvc是基於過濾器對servlet進行了封裝的一個框架,我們使用的時候就是在web.xml檔案中配置DispatcherServlet類;SpringMvc工作

Apple Lost Innovation, Copies the Developer App and launches in WWDC Breach of Trust with

Apple knows we cant create patent on software and now that they will go on and on copying any of the developer apps which we trust and submit and they will

AI full of possibilities with the right tools and understanding

Consumer identity is just one of many areas where artificial intelligence (AI) can be helpful in analysing vast amounts of data from millions of sources to