IPSEC VPN连接最佳实践。

0

一个有关IPSEC VPN的问题:VPN的AWS端是两个IP,两条VPN通道分别连接对端的一个公网IP。我想了解下AWS端的最佳实践是Active-Active还是Active-Passive模式,传输流量时是双活还是主备?

profile picture
EXPERT
asked 2 months ago27 views
1 Answer
0

不管是Active-Active还是Active-Passive,AWS已经在默认情况下利用这两个tunnel做好了冗余,要点是在配置客户网关设备的时候,这两条tunnel都配好。如果选Active-Active,设备网关要选择非对称路由。如果设备支持BGP,建议选择这种动态路由。 有关Active-Active和Active-Passive的区别,请看这篇文章https://aws.amazon.com/cn/premiumsupport/knowledge-center/vpn-configure-tunnel-preference/?nc1=h_ls

profile picture
EXPERT
answered 2 months ago

You are not logged in. Log in to post an answer.

A good answer clearly answers the question and provides constructive feedback and encourages professional growth in the question asker.

Guidelines for Answering Questions