Why Ping works but Reachability Analyzer does not for StrongSwan and VPN, TGW?

0

I follow this aws blog to setup a simulated on-premise with site-to-site VPN and Transit Gateway to connect to AWS. The simulated on-premise uses the strongswan installed in an EC2.

  1. Ping and Reach Analyzer works for path between VPCs in AWS.
  2. Ping works for a path between the simulated on-premise and VPCS in AWS
  3. Reach Analyzer does not work for a path between the simulated on-premise and VPCS in AWS. WHY?
hai
已提问 2 年前689 查看次数
1 回答
1
已接受的回答

When you're running a connectivity test (such as when using ping) you're sending packets through the network path to test it. Reachability Analyzer doesn't do that - instead it looks at the configuration of your VPC and uses automated reasoning to determine what network flows are possible. But the VPC configuration does not contain information abut how (in this case) strongSwan is configured so it cannot perform analysis for that.

profile pictureAWS
专家
已回答 2 年前
  • Thank you!

您未登录。 登录 发布回答。

一个好的回答可以清楚地解答问题和提供建设性反馈,并能促进提问者的职业发展。

回答问题的准则