Got it

VDC interworking VS VPC interworking VS security groups

Created: Jan 10, 2020 02:30:27Latest reply: Aug 25, 2021 02:09:58 766 2 0 0 0
  Rewarded HiCoins: 0 (problem resolved)

Hello, team!

What are the application scenario differences among VDC interworking, VPC interworking, and security groups on ServiceCenter?

Any solutions will be appreciated!

Featured Answers

Recommended answer

olive.zhao
Admin Created Jan 10, 2020 02:44:57

Hello, dear!

Have a nice day!

The following will describe the differences among application scenarios of VDC interworking, VPC interworking, and security groups.

VDC interworking

Resources (for example, cloud hosts) of different VDCs are isolated and cannot communicate with each other. When you require two cloud hosts of different VDCs in the same cloud resource pool to communicate with each other, create VDC interworking. After the creation, the cloud hosts on the routed networks of different VDCs can communicate with each other.

When you require two cloud hosts of different VDCs in the same cloud resource pool to communicate with each other, you can create VDC interworking.

Before creating the VDC interworking, you need to create an interworking network in the cloud resource pool and permit the network in the ACL of the firewall.


VPC interworking

A VPC can provide a secure, isolated network for VDCs. Resources (for example, cloud hosts) of different VPCs are isolated and cannot communicate with each other. When you require two cloud hosts of different VPCs to communicate with each other, create VPC interworking. After the creation, the cloud hosts on the routed networks of different VPCs can communicate with each other.

When resources (for example, cloud hosts) of different VPCs in the same VDC of a cloud resource pool need to communicate with each other, you can create VPC interworking.

Before creating the VPC interworking, you need to create an interworking network in the cloud resource pool and permit the network in the ACL of the firewall.


Security groups

A security group controls cloud host access, enhancing cloud host security. VDC administrators can define different access control rules for a created security group, and these rules take effect for all cloud hosts added to this security group.

1. When resources (for example, cloud hosts) of the same VPC in the same VDC of a cloud resource pool need to be isolated or communicate with each other, you can create security groups.

2. When resources (such as cloud hosts) of different VPCs in the same VDC of a cloud resource pool need to be isolated or communicate with each other, you can create security groups.


Constraints

There are the following constraints when you use VDC interworking, VPC interworking, and security groups:

1. If cloud host A and cloud host B that belong to different VDCs in the same cloud resource pool need to communicate with each other, you need to create VDC interworking, and cancel the restriction from security groups to which the cloud hosts belong.

2. If cloud host A and cloud host B that belong to different VPCs in the same VDC need to communicate with each other, you need to create VPC interworking, and cancel the restriction from security groups to which the cloud hosts belong.

3. If cloud host A and cloud host B belong to a same VPC, you can use security groups to control the access between the cloud hosts.

Any further questions, let us know!

View more
  • x
  • convention:

All Answers

Hello, dear!

Have a nice day!

The following will describe the differences among application scenarios of VDC interworking, VPC interworking, and security groups.

VDC interworking

Resources (for example, cloud hosts) of different VDCs are isolated and cannot communicate with each other. When you require two cloud hosts of different VDCs in the same cloud resource pool to communicate with each other, create VDC interworking. After the creation, the cloud hosts on the routed networks of different VDCs can communicate with each other.

When you require two cloud hosts of different VDCs in the same cloud resource pool to communicate with each other, you can create VDC interworking.

Before creating the VDC interworking, you need to create an interworking network in the cloud resource pool and permit the network in the ACL of the firewall.


VPC interworking

A VPC can provide a secure, isolated network for VDCs. Resources (for example, cloud hosts) of different VPCs are isolated and cannot communicate with each other. When you require two cloud hosts of different VPCs to communicate with each other, create VPC interworking. After the creation, the cloud hosts on the routed networks of different VPCs can communicate with each other.

When resources (for example, cloud hosts) of different VPCs in the same VDC of a cloud resource pool need to communicate with each other, you can create VPC interworking.

Before creating the VPC interworking, you need to create an interworking network in the cloud resource pool and permit the network in the ACL of the firewall.


Security groups

A security group controls cloud host access, enhancing cloud host security. VDC administrators can define different access control rules for a created security group, and these rules take effect for all cloud hosts added to this security group.

1. When resources (for example, cloud hosts) of the same VPC in the same VDC of a cloud resource pool need to be isolated or communicate with each other, you can create security groups.

2. When resources (such as cloud hosts) of different VPCs in the same VDC of a cloud resource pool need to be isolated or communicate with each other, you can create security groups.


Constraints

There are the following constraints when you use VDC interworking, VPC interworking, and security groups:

1. If cloud host A and cloud host B that belong to different VDCs in the same cloud resource pool need to communicate with each other, you need to create VDC interworking, and cancel the restriction from security groups to which the cloud hosts belong.

2. If cloud host A and cloud host B that belong to different VPCs in the same VDC need to communicate with each other, you need to create VPC interworking, and cancel the restriction from security groups to which the cloud hosts belong.

3. If cloud host A and cloud host B belong to a same VPC, you can use security groups to control the access between the cloud hosts.

Any further questions, let us know!

View more
  • x
  • convention:

Good answer
View more
  • x
  • convention:

Comment

You need to log in to comment to the post Login | Register
Comment

Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " User Agreement."

My Followers

Login and enjoy all the member benefits

Login

Block
Are you sure to block this user?
Users on your blacklist cannot comment on your post,cannot mention you, cannot send you private messages.
Reminder
Please bind your phone number to obtain invitation bonus.