Got it

CloudVPN forwarding principle (VXLAN)

Latest reply: May 20, 2020 05:00:39 442 1 1 0 0

Hi, everyone! Today I’m going to introduce you here is an example of a VXLAN tunnel. The forwarding principles of other tunnel technologies are similar.


The first diagram outlines the principle of communication between the virtual machine and the outside. At present, the virtual machine VM is connected to the virtual switch vSwitch inside the server (this also means that the packets of the VM can pass the VLAN marked by vSiwtch). If the vSwitch supports VXLAN, the physical network becomes a pure Underlay network.


2


The second picture roughly describes the networking after CloudVPN created vCPE (CloudCPE) and vFW (CloudFW). VCPE and vFW are VNFs, not pure VMs. But the principle can refer to the principle of the first picture, vCPE and vFW are actually connected through vSwitch, and different links are distinguished by different VLANs.


And these VLANs will also be transparent to the physical switch, which means that vCPE and vFW can also be deployed on multiple different physical servers and interconnected by vSwitch + physical switch.

2


The third picture is the logical structure of the second picture. There is a logical direct connection between vCPE and vFW. VCPE and vFW). In the diagram here, ThinCPE is connected to vCPE through VXLAN, so VXLAN packets must be terminated on the BDIF of vCPE.


vCPE and vFW use policy routing to divert traffic. vCPE uses policy routing to force traffic to vFW for processing. vFW also uses policy routing to force traffic back to vCPE.


3

 If you have any problems, please post them in our Community. We are happy to solve them for you!


Interesting example for the knowledge.
View more
  • x
  • convention:

Comment

You need to log in to comment to the post Login | Register
Comment

Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " User Agreement."

My Followers

Login and enjoy all the member benefits

Login

Block
Are you sure to block this user?
Users on your blacklist cannot comment on your post,cannot mention you, cannot send you private messages.
Reminder
Please bind your phone number to obtain invitation bonus.