Your business is unable to connect to the network and encounters packet loss, resulting in exceptions.
The reasons are as follows:
-Connection interruption: the connection is damaged. For example, the cable is cut off.
-Bandwidth exhaustion: the dedicated tunnel’s bandwidth is insufficient to meet business requirements.
-Security policy misconfiguration: the IDC route to and from VPC is different
A connection to one access point
Your IDC connects to one Tencent Cloud access point using a connection, and then accesses Tencent Cloud VPCs. The disconnection will directly cause business interruption.
Solution
Report the failure to the carrier and provide the connection ID. This mode is incapable of disaster recovery. We recommend that you plan connections to improve the stability and high availability of the Direct Connect network architecture. For more information, see Network Planning.
Two connections to one access point
Your IDC connects to one Tencent Cloud access point using two connections, and then accesses Tencent Cloud VPCs. When one connection interrupts, disaster recovery starts.
**Solution
A connection to one access point
Your IDC connects to one Tencent Cloud access point using a connection, and then accesses Tencent Cloud VPCs. When the dedicated tunnel bandwidth is used up, packet will be lost, resulting in data loss.
Solution
Two connections to two access points
Your IDC connects to two intra-region Tencent Cloud access points using one connection respectively, and then accesses Tencent Cloud VPCs.
Your IDC connects to two intra-region Tencent Cloud access points using one connection respectively, and then accesses Tencent Cloud VPCs. If your IDC accesses Tencent Cloud VPC via the primary connection and is accessed by Tencent Cloud VPC via the secondary connection, different routes will cause inaccessibility.
Solution
Your IDC connects to two intra-region Tencent Cloud access points using one connection respectively, and then accesses Tencent Cloud VPCs.
If the primary connection cascades a layer-3 device, the IDC server port exception or abnormal link from the layer-3 device to IDC is imperceptible to the access point A, and no alarm will be triggered. In this case, the dedicated tunnel still sends static route to the direct connect gateway and forward traffic to the faulty connection, causing service suspension.
Solution
We recommend that configure BFD on access devices at IDC and access point for the static route to periodically send a detection packet. If there is no reply within a specified period, the opposite end is determined to be faulty and the associated route will become invalid without forwarding to the direct connect gateway.
Please submit a ticket to enable the BFD feature of the dedicated tunnel and the configuration will be provided.
Note:
The default Tencent Cloud BFD is dynamic BFD. The local TX Interval is equal to VPC’s Desired Min TX Interval or IDC’s Required Min RX Interval, whichever is larger.
- For 1.0 dedicated tunnel:
- If you applied for the dedicated tunnel before October 1, 2019, both Desired Min TX Interval and Required Min RX Interval are 100 ms, and Detect Mult is 3.
- If you applied for the dedicated tunnel on or after October 1, 2019, both Desired Min TX Interval and Required Min RX Interval are 300 ms, and Detect Mult is 3.
- For 2.0 dedicated tunnel:
- The minimum values of both Desired Min TX Interval and Required Min RX Interval are 1000 ms, and Detect Mult is 3.
Each dedicated tunnel supports up to 100 BGP routes. If this limit is exceeded, your business may fail.
Solution
Plan network addresses and merge CIDR block subnet to reduce IDC routes to Tencent Cloud VPC.
Both VPC and IDC follow the TCP/IP protocol that has layer-3 addressing based on the destination IP and layer-2 addressing based on destination MAC. In a hybrid-cloud scenario, the overlap of the IDC and VPC address space may cause IP address conflicts and limit business access.
Solution
Note:
A NAT-type direct connect gateway supports up to 100 rules for local IP translation and peer IP translation each.
Was this page helpful?