Tag

VPC

1 views collected around this technical thread.

360 Zhihui Cloud Developer
360 Zhihui Cloud Developer
Apr 16, 2025 · Information Security

Designing an Internet‑Facing Cloud Firewall: Architecture, Rules, and Future Plans

This article outlines the background, architectural design, implementation details, and future roadmap of an internet‑boundary cloud firewall built on DPDK, covering physical and software structures, traffic steering, rule matching logic, and planned enhancements such as logging and traffic analysis.

DPDKNetwork SecurityVPC
0 likes · 6 min read
Designing an Internet‑Facing Cloud Firewall: Architecture, Rules, and Future Plans
360 Zhihui Cloud Developer
360 Zhihui Cloud Developer
Mar 10, 2025 · Information Security

Implementing VM Traffic Mirroring for Security Auditing in Cloud VPC

This article explains how to design, configure, and verify a VM traffic mirroring solution in a cloud VPC, covering capture sources, filtering methods, receiver setup, and practical OVS commands for security auditing, intrusion detection, and business analysis.

Cloud NetworkingOVSSecurity Auditing
0 likes · 11 min read
Implementing VM Traffic Mirroring for Security Auditing in Cloud VPC
360 Zhihui Cloud Developer
360 Zhihui Cloud Developer
Feb 20, 2025 · Cloud Computing

How to Enable Cross‑VPC Function Compute with NAT and VXLAN

This article explains a VPC NAT solution that lets function compute pods in a shared Kubernetes VPC securely access services in overlapping business VPCs by using NAT ENIs, MAC adjustments, VXLAN encapsulation, and SNAT/DNAT rules.

Cloud NetworkingCross-VPCFunction Compute
0 likes · 7 min read
How to Enable Cross‑VPC Function Compute with NAT and VXLAN
360 Zhihui Cloud Developer
360 Zhihui Cloud Developer
Oct 17, 2024 · Cloud Computing

Achieving Zero‑Downtime VM Live Migration in 360 VPC Overlay

This article explains the network interruption issues of VM live migration in 360's VPC overlay (V1), analyzes the root causes, and presents a V2 redesign that eliminates downtime through pre‑loaded forwarding policies, traffic redirection, and streamlined component collaboration.

Overlay NetworkVM live migrationVPC
0 likes · 12 min read
Achieving Zero‑Downtime VM Live Migration in 360 VPC Overlay
360 Smart Cloud
360 Smart Cloud
May 7, 2024 · Cloud Computing

Design and Implementation of PrivateLink and ClassicLink in Cloud VPC Networks

This article explains the background, overall architecture, and detailed design and implementation of PrivateLink and ClassicLink gateways within a cloud VPC environment, covering their control and forwarding planes, workflow steps, and future optimization plans.

ClassicLinkCloud NetworkingFULLNAT
0 likes · 10 min read
Design and Implementation of PrivateLink and ClassicLink in Cloud VPC Networks
360 Smart Cloud
360 Smart Cloud
Mar 15, 2024 · Cloud Computing

Integrating Kubernetes Pods with OpenStack VPC Network Using a Custom CNI and IPVLAN

This article describes how 360 unified Kubernetes pod networking with OpenStack VPC by developing a custom CNI plugin that leverages Neutron elastic ports, IPVLAN L2 mode, and OVS to achieve layer‑2 connectivity between VMs and pods, including detailed implementation steps and command examples.

CNIKubernetesNetwork Integration
0 likes · 8 min read
Integrating Kubernetes Pods with OpenStack VPC Network Using a Custom CNI and IPVLAN
Bilibili Tech
Bilibili Tech
Jan 9, 2024 · Cloud Computing

Practical Cloud Networking Architecture and Practices at Bilibili

Bilibili’s hybrid‑cloud architecture combines multiple public clouds and its own data centers using a star‑centered topology, employing VPCs, load balancers, NAT gateways, and dedicated lines managed via a multi‑cloud platform, while outlining project‑network setup, security rules, and proxy‑forwarding solutions for reliable, cost‑effective cloud networking.

BilibiliCloud NetworkingMulti-Cloud
0 likes · 18 min read
Practical Cloud Networking Architecture and Practices at Bilibili
37 Interactive Technology Team
37 Interactive Technology Team
Oct 10, 2023 · Cloud Computing

AWS Transit Gateway: Concepts, Configuration Steps, and Best Practices

The guide explains AWS Transit Gateway as a cloud router linking VPCs, VPNs, Direct Connect and on‑premises networks, details attachment types, route tables, MTU limits, step‑by‑step creation, custom routing, verification, and best‑practice design recommendations for scalable, highly available deployments.

AWSTransit GatewayVPC
0 likes · 9 min read
AWS Transit Gateway: Concepts, Configuration Steps, and Best Practices
Qunar Tech Salon
Qunar Tech Salon
Mar 10, 2022 · Operations

Design and Implementation of Cisco Nexus VPC for Qunar K8S Network

This article details the background, design rationale, network topology changes, and step‑by‑step procedures—including VPC configuration, BGP setup, and port‑channel adjustments—used to upgrade Qunar's data‑center network for Kubernetes deployments, with practical code examples and operational tips.

BGPCiscoDataCenter
0 likes · 11 min read
Design and Implementation of Cisco Nexus VPC for Qunar K8S Network
360 Zhihui Cloud Developer
360 Zhihui Cloud Developer
Mar 8, 2022 · Cloud Computing

How 360’s Host‑Overlay VPC Architecture Boosts Private Cloud Performance

To meet growing business demands, 360’s virtualization team replaced the legacy overlay network with a host‑overlay VPC solution that decouples switches, supports private cloud isolation, leverages DPVS‑based gateways, and integrates monitoring, delivering high‑availability, scalable traffic handling across its 25 G data centers.

Cloud NetworkingDPDKHost Overlay
0 likes · 19 min read
How 360’s Host‑Overlay VPC Architecture Boosts Private Cloud Performance
Cloud Native Technology Community
Cloud Native Technology Community
Dec 17, 2021 · Cloud Native

Kube‑OVN: Enabling Enterprise Innovation with Cloud‑Native Networking

This article reviews Du Dongming’s presentation on Kube‑OVN, tracing the evolution of cloud‑native networking from early container experiments to modern multi‑tenant VPC, subnet management, overlay/underlay modes, and the roadmap that positions Kube‑OVN as a comprehensive SDN solution for enterprise Kubernetes environments.

CNIKube-OVNKubernetes
0 likes · 21 min read
Kube‑OVN: Enabling Enterprise Innovation with Cloud‑Native Networking
360 Tech Engineering
360 Tech Engineering
Jul 13, 2021 · Cloud Native

Design and Architecture of CLOUD‑DPVS Gateway for VPC‑to‑IDC Connectivity

The article describes the design, architecture, and implementation details of the CLOUD‑DPVS gateway, a high‑performance, VXLAN‑based load‑balancing solution that connects VPC networks to classic IDC networks, covering its high‑availability improvements, FULLNAT mode, traffic flow, and future offload plans.

BFDDPVSLoad Balancing
0 likes · 15 min read
Design and Architecture of CLOUD‑DPVS Gateway for VPC‑to‑IDC Connectivity
Qunar Tech Salon
Qunar Tech Salon
Jun 22, 2021 · Operations

Troubleshooting BFD Neighbor Failure on Cisco Nexus Switches with VPC Peer‑Gateway

This article details a Cisco Nexus network scenario where two switches use VPC and BFD for link fault detection, explains why BFD neighbor establishment fails due to VPC peer‑gateway causing TTL reduction and MAC rewriting, and presents test results and configuration recommendations to resolve the issue.

BFDCiscoHSRP
0 likes · 10 min read
Troubleshooting BFD Neighbor Failure on Cisco Nexus Switches with VPC Peer‑Gateway
Cloud Native Technology Community
Cloud Native Technology Community
Jan 5, 2021 · Cloud Native

Building Multi‑Tenant VPC Container Networks with Kube‑OVN on Edge Computing

This article explains why multi‑tenant VPC networks are essential for modern cloud‑native environments, outlines typical use cases such as public‑cloud container services, virtual‑machine workloads and finance, discusses the challenges of implementing tenant isolation in Kubernetes, and describes how the Kube‑OVN‑based solution was enhanced and deployed on edge‑computing platforms to provide strong VPC isolation, flexible IP management, and integrated load‑balancing services.

Edge ComputingKube-OVNKubernetes
0 likes · 14 min read
Building Multi‑Tenant VPC Container Networks with Kube‑OVN on Edge Computing
Architects Research Society
Architects Research Society
Dec 24, 2020 · Cloud Computing

Enforcing Squid Access Policies for Amazon S3 and Yum in an AWS VPC

This tutorial demonstrates how to configure an open‑source Squid proxy in an AWS VPC to restrict Internet access, allow only approved Amazon S3 buckets and Yum repositories, route traffic through specific gateways, and achieve high availability using Auto Scaling and Route 53.

AWSHigh AvailabilityProxy
0 likes · 20 min read
Enforcing Squid Access Policies for Amazon S3 and Yum in an AWS VPC
Tencent Cloud Developer
Tencent Cloud Developer
Dec 13, 2019 · Cloud Computing

Tencent Cloud IPv6 Load Balancing Setup Guide

This guide walks you through configuring an IPv6 VPC, assigning addresses to cloud servers, deploying Nginx, creating an IPv6 Cloud Load Balancer with listeners, adding AAAA and A DNS records, and testing the setup on Tencent Cloud’s supported regions.

CLBIPv6Load Balancing
0 likes · 10 min read
Tencent Cloud IPv6 Load Balancing Setup Guide
Qunar Tech Salon
Qunar Tech Salon
Jun 22, 2018 · Operations

Evolution of Data Center Network Architecture at Qunar: From Traditional STP to Leaf‑Spine and VXLAN

The article outlines Qunar's data‑center network evolution, describing the limitations of traditional STP‑based designs, the adoption of vPC for active‑active redundancy, the transition to leaf‑spine topology for scalability, and the implementation of VXLAN to support large‑scale multi‑tenant cloud environments.

VPCVxLANdata center
0 likes · 8 min read
Evolution of Data Center Network Architecture at Qunar: From Traditional STP to Leaf‑Spine and VXLAN
360 Zhihui Cloud Developer
360 Zhihui Cloud Developer
Mar 13, 2018 · Cloud Computing

How 360 Qiyun Evolved Its VPC Architecture for Elastic Operations

This article details the evolution of 360 Qiyun's VPC solution, describing the two‑stage migration from a customized OpenStack Neutron Liberty deployment to a hardware‑assisted EVPN + VXLAN architecture, the specific network enhancements made, performance problems encountered, and the operational benefits achieved.

Cloud NetworkingEVPNNeutron
0 likes · 10 min read
How 360 Qiyun Evolved Its VPC Architecture for Elastic Operations
Tencent Cloud Developer
Tencent Cloud Developer
Mar 3, 2017 · Cloud Computing

Understanding VPC vs Classic Network in Public Cloud

After a mis‑configured security group in a classic network exposed a neighboring Alibaba Cloud user, developers highlighted the risks of shared internal networks and advocated moving to isolated Virtual Private Clouds, which offer customizable subnets, fine‑grained security, hybrid connectivity, and are now favored across major public‑cloud providers.

Cloud NetworkingNetwork MigrationSecurity
0 likes · 7 min read
Understanding VPC vs Classic Network in Public Cloud
360 Zhihui Cloud Developer
360 Zhihui Cloud Developer
Mar 2, 2017 · Cloud Computing

Is Your Classic Cloud Network Unsafe? Learn How VPCs Provide True Isolation

This article explains why traditional "classic" cloud networking lacks proper layer‑2 isolation, compares flat, VLAN, and overlay designs in OpenStack Neutron, and shows how virtual private clouds (VPCs) offer secure, scalable network segmentation for modern multi‑tenant environments.

Cloud NetworkingOpenStackVLAN
0 likes · 7 min read
Is Your Classic Cloud Network Unsafe? Learn How VPCs Provide True Isolation