HUAWEI CLOUD Platform Architecture Terminology Explanation

Glossary

Internet equipment

ISW (external network access switch): egress switch, often used to establish static/BGP routing interconnection with the external network
CSW (intranet access switch): dedicated line access (backbone of the user's internal network) switch, the user's own network passes through this device Open up with the network on the cloud to realize the routing distribution interaction inside and outside the cloud network, including VPC dedicated line access.
DSW (distribution layer core switch): The core switch of the data center is used to connect each ASW access switch.
ASW (access layer switch/private cloud physical server access): data exchange module access switch, access cloud server, uplink interconnection core switch DSW.
LSW (integrated access switch): integrated access module, cloud product service access switch, mainly provides services such as VPC and SLB. Various cloud product servers (XGW/SLB/OPS): interconnect with two LSWs respectively, exchanging routing information through OSPF; exchanging routing information between two LSWs through iBGP; exchanging routing information between LSW, DSW and CSW through eBGP.
OMR (out-of-band core switch): out-of-band network core switch
OASW (out-of-band access switch): connected to the out-of-band network port of the server
XGW (VPC gateway server): the gateway device of VPC is called XGW, which consists of server clusters and LSW Run the EBGP routing protocol between them.

VRouter (virtual router): the hub of the VPC network, which connects each switch in the VPC, and is also a gateway device connecting the VPC and other networks VSwitch (virtual switch)
: the basic network device that forms the VPC network, which can connect to different cloud product instances ECS: cloud server, connected to the virtual router on the VBR (CsW) through
ASW, used to establish a vLAN tunnel with Route, connect to the customer network, and realize the intercommunication of the dedicated line and network connection: through the physical link, the customer network and the private cloud network are connected , divided into classic network, VPC grid-connected, and external network grid-connected Security group: virtual firewall, with state detection treasure filtering function EIP: Elastic public network IP, used for cloud server ECS to access the Internet, dynamically bind different cloud server ECS Instance EC: Open up the network between VPCs in the APC to realize communication between different VPCs. NAT Gateway: Used for instances in the VPC to access the Internet for address translation. AVS is a virtual switch. When ECS needs to access the outside world, it must use the AVS to encapsulate and decapsulate the data.






MGW: (load balancing)
VPC (Virtual Private Cloud): Different VPCs are completely isolated logically. Users can freely configure sub-services such as IP address segments, subnets, and security groups in the VPC. Each virtual private cloud Cloud VPC consists of a private network segment, a router, and at least one subnet.

Access scene traffic model

insert image description here
insert image description here
insert image description here

Guess you like

Origin blog.csdn.net/PanJWei/article/details/129386762