- Le plus récent
- Le plus de votes
- La plupart des commentaires
Assuming both DX connections are in same co-lo, then:
VGW: VIF would be preferred over DXGW:VIF for return path (assuming both sessions are advertising same prefixes). You can use AS PATH prepending or LP commnities to control ingress traffic from AWS.
The recommended way to control ingress traffic from AWS going to a VPC is by using LP communities or AS PATH Prepending https://docs.aws.amazon.com/directconnect/latest/UserGuide/routing-and-bgp.html
Again, this is pretty tricky, "we set localpref for local region VIFs so that will override the AS prepend from remote region VIFs in some cases." This things also varies when 2 DX connections are from different co-locations homing same AWS region. Hence, it is recommended to get complete control to the ingress traffic flow through LP communities.
Contenus pertinents
- demandé il y a 9 mois
- demandé il y a un an
- demandé il y a un mois
- AWS OFFICIELA mis à jour il y a 2 ans
- AWS OFFICIELA mis à jour il y a 2 ans
- Comment connecter différentes succursales à l'aide de AWS Site-to-Site VPN et d'AWS Direct Connect ?AWS OFFICIELA mis à jour il y a un an
- AWS OFFICIELA mis à jour il y a 10 mois