Upgrade to Pro — share decks privately, control downloads, hide ads and more …

OCI技術資料 : 仮想クラウド・ネットワーク (VCN) 概要

OCI技術資料 : 仮想クラウド・ネットワーク (VCN) 概要

Oracle Cloud Infrastructure (OCI) の技術説明資料、仮想クラウド・ネットワーク (VCN) 概要編 (Level 100) です。

クラウド内に構成する仮想クラウド・ネットワークと、その構成コンポーネント (サブネット、仮想NIC、ゲートウェイ、ルート表、セキュリティ・リスト) と、ネットワークの結合(ピアリング)に関して解説しています。

More Decks by Oracle Cloud Infrastructure ソリューション・エンジニア

Other Decks in Technology

Transcript

  1. 仮想クラウド・ネットワーク (VCN) 概要 Virtual Cloud Network Level 100 Oracle Cloud

    Infrastructure 2022 7
  2. • (VCN) • • IP IP • OCI • NAT

    • VPN FastConnect Copyright © 2022, Oracle and/or its affiliates. 2
  3. Copyright © 2022, Oracle and/or its affiliates. 3 Creating VCN

    VCNの作成⽅法
  4. OCI VCN 2 • • VCN – OCI Copyright ©

    2022, Oracle and/or its affiliates. 4
  5. Copyright © 2022, Oracle and/or its affiliates. 5 VCNs and

    Subnets VCNとサブネット
  6. Oracle Cloud Infrastructure • 5 CIDR • CIDR /30(4 IP)

    /16(65,536 IP) • CIDR • • IP • RFC1918 OCI 翻 • : 169.254.0.0/16 • DBCS : 192.168.16.16/28 ( ) • Exadata CS : 192.168.128.0/20 ( ) • (VCN) Copyright © 2022, Oracle and/or its affiliates. 6 2 1 VCN 10.0.0.0/16
  7. CIDR (Classless Inter-Domain Routing) • xxx.xxx.xxx.xxx/n n 翻 ) /24

    = 255.255.255.0 • 192.168.1.0/24 IP : 192.168.1.0-192.168.1.255 • 128 64 32 16 8 4 2 1 →27 26 25 24 23 22 21 20 • 192 1 1 0 0 0 0 0 0 • 192.168.1.0/27 IP :192.168.1.0-192.168.1.31 • 8 32 /27 (255.255.255.224) • Subnets – 2 x 2 x 2 = 8. Hosts – 2 x 2 x 2 x 2 x 2 = 32 • Subnetworks – 192.168.1.0/27, 192.168.1.32/27, 192.168.1.64/27… CIDR Copyright © 2022, Oracle and/or its affiliates. 7 192.168.1.0 –192.168.1.255
  8. VCN CIDR 2 • – (AD) • – 2 •

    – NIC IP • – NIC IP IP 2 1 翻 ( 10.0.0.0/24 .0, .1, .255 ) Copyright © 2022, Oracle and/or its affiliates. 8 2 1 VCN 10.0.0.0/16 10.0.0.0/24 10.0.1.0/24 10.0.2.0/24
  9. Copyright © 2022, Oracle and/or its affiliates. 9 Virtual NICs

    and IP Addresses 仮想NICとIPアドレス
  10. 1 NIC NIC 1 IP 1 NIC ( ) NIC

    IP IP 31 (IP ) IP IP 1 NIC (vNIC) IP Copyright © 2022, Oracle and/or its affiliates. 10 NIC • IP • IP #1 #2… #31 NIC • IP • IP #1 #2… #31 SUBNET A, 10.0.1.0/24
  11. vNIC1 NIC NIC VCN • • VM1 : NIC1 •

    VM2 : NIC 2 VCN • : UTM 2 • VM3 : NIC 2 VCN • : NIC (IP ) NIC Copyright © 2022, Oracle and/or its affiliates. 11 1 A 10.0.0.0/24 VCN X 172.16.0.0/24 VM1 VM2 B 10.0.1.0/24 vNIC2 vNIC3 vNIC5 VM3 vNIC4
  12. NIC 2 VCN IP IP NIC IP Copyright © 2022,

    Oracle and/or its affiliates. 12 1 A 10.0.0.0/24 VM1 VM2 Ip1 IP2 IP3 vNIC1 IP4 vNIC1 B 10.0.1.0/24 IP5 IP6 IP7 vNIC3
  13. IP 翻 IPv4 NIC IP IP IP • Oracle IP

    IP 翻 • • NAT • DRG - IPsec • OKE • Oracle IP • • Autonomous Database IP Copyright © 2022, Oracle and/or its affiliates. 13
  14. 2 IP • IP • IP • • IP •

    IP • IP • • NIC 32 IP IP Copyright © 2022, Oracle and/or its affiliates. 14
  15. Copyright © 2022, Oracle and/or its affiliates. 15 Gateways and

    Routings ゲートウェイとルーティング
  16. VCN 10.0.0.0/16 B 10.0.2.0/24 VCN • VCN 1 • •

    VCN Copyright © 2022, Oracle and/or its affiliates. 16 IP
  17. VCN 10.0.0.0/16 B 10.0.2.0/24 VCN 翻 • • • CIDR

    • CIDR ( ) • VCN VCN • Copyright © 2022, Oracle and/or its affiliates. 17 CIDR 0.0.0.0/0 : (VCN )
  18. VCN 10.0.0.0/16 B 10.0.2.0/24 IP • ( ) • VCN

    NAT 1 NAT NAT Copyright © 2022, Oracle and/or its affiliates. 18 CIDR 0.0.0.0/0 NAT IP NAT
  19. VCN 10.0.0.0/16 B 10.0.2.0/24 VCN OCI • • OCI •

    • • • NAT • • • DB • VCN Autonomous Database Copyright © 2022, Oracle and/or its affiliates. 19
  20. Oracle Cloud Infrastructure (Tokyo) Oracle Cloud Infrastructure (Osaka) ※ 2021

    5 DRG (DRGv2) → v2 DRG = OCI • • VCN( ) • VCN( DRG ) • IPsec VPN FastConnect • Azure InterConnect • VCN FastConnect VPN • DRG • • ( / ) • • (DRG) Copyright © 2022, Oracle and/or its affiliates. 20 VCN VCN Dynamic Routing Gateway Dynamic Routing Gateway VCN Remote Peering Connection Remote Peering Connection FastConnect VPN On-premise Data Center
  21. Copyright © 2022, Oracle and/or its affiliates. 21 Peerings ピアリング

  22. ※ 2021 5 DRG • (DRG) VCN DRG VCN •

    LPG 1 DRG VCN(<500) • CIDR VCN • DRG VCN ( ) VCN (DRG ) Copyright © 2022, Oracle and/or its affiliates. 22 VCN1 10.0.0.0/16 VCN2 192.168.0.0/16 CIDR 192.168.0.0/16 DRG 172.16.0.0/16 DRG CIDR 10.0.0.0/16 DRG 172.16.0.0/16 DRG Route Table Route Table VCN3 172.16.0.0/16 Dynamic Routing Gateway Route Table CIDR 10.0.0.0/16 DRG 172.16.0.0/16 DRG
  23. ※ 2021 5 ※ 2021 5 DRGv2 DRG LPG VCN

    2 VCN IP 翻 VCN (LPG) CIDR VCN VCN VCN VCN (LPG ) Copyright © 2022, Oracle and/or its affiliates. 23 VCN1 10.0.0.0/16 VCN2 192.168.0.0/16 LPG-1 LPG-2 CIDR 192.168.0.0/16 LPG-1 CIDR 10.0.0.0/16 LPG-2
  24. 2 VCN 2 VCN IP 翻 VCN (DRG) OCI DRG

    (RPC) VCN Copyright © 2022, Oracle and/or its affiliates. 24 1 VCN1 10.0.0.0/16 192.168.0.0/16 DRG1 10.0.0.0/16 DRG2 Dynamic Routing Gateway 1 Dynamic Routing Gateway 2 RPC Route Table Route Table 10.0.0.0/16 VCN1 192.168.0.0/16 RPC 10.0.0.0/16 RPC 192.168.0.0/16 VCN2 Route Table Route Table VCN2 192.168.0.0/16
  25. Web NAT IPsec VPN ( ) FastConnect ( ) 2

    VCN ( ) 2 VCN OCI Copyright © 2022, Oracle and/or its affiliates. 25
  26. Copyright © 2022, Oracle and/or its affiliates. 26 Transit Routing

    トランジット・ルーティング
  27. VCN 1 2 VCN ( ) VCN : 3 VCN

    Copyright © 2022, Oracle and/or its affiliates. 27 VCN VCN FastConnect / IPsec VPN VCN
  28. 1. FastConnect/VPN VCN • 1 FastConnect VPN VCN 2. Oracle

    • FastConnect VPN IP VCN Oracle (Object Storage/Autonomous DB) 3. VCN • 2 VCN VCN VCN VCN 3 Copyright © 2022, Oracle and/or its affiliates. 28 OCI Service Gateway VCN ORACLE SERVICES NETWORK Object Storage
  29. Copyright © 2022, Oracle and/or its affiliates. 29 Security セキュリティ

  30. • NIC • ( ) ( ) • • •

    NIC Copyright © 2022, Oracle and/or its affiliates. 30 SUBNET A, 10.0.1.0/24 SUBNET B, 10.0.2.0/24 VCN, 10.0.0.0/16 Security List Security List SUBNET C, 10.0.2.0/24 Security List Direction CIDR Protocol Source Port Dest Port Stateful Ingress 0.0.0.0/0 TCP All 80 Stateful Egress 10.0.2.0/24 TCP All 152 1
  31. SUBNET A, 10.0.1.0/24 VCN, 10.0.0.0/16 SUBNET B, 10.0.1.0/24 NSG-A NSG-B

    NSG-A Directio n CIDR Protocol Source Port Dest Port NSG-A Stateful Ingress 0.0.0.0/0 TCP All 80 NSG-B Stateful Ingress 0.0.0.0/0 TCP All 22 • NIC • NSG 翻 ( ) • NSG ( CIDR ) (NSG) Copyright © 2022, Oracle and/or its affiliates. 31
  32. SL NSG 翻 OR • NIC SL • NIC NSG

    Copyright © 2022, Oracle and/or its affiliates. 32 SUBNET A, 10.0.1.0/24 Security List 1 Security List 2 NSG-A NSG-B
  33. Copyright © 2022, Oracle and/or its affiliates. 33 • TCP

    • OK • TCP NIC • • / • UDP Web •
  34. Copyright © 2022, Oracle and/or its affiliates. 34 Default VCN

    and Internal DNS デフォルトのVCN設定、名前解決
  35. 2 1 VCN 10.0.0.0/16 A 10.0.1.0/24 B 10.0.2.0/24 RT SL

    SL VCN • • • DHCP • / • VCN Copyright © 2022, Oracle and/or its affiliates. 35
  36. VCN DNS ( ) • VCN DNS (IP 169.254.169.254) VCN

    • IP * DNS A • : hostname ( ) • FQDN : < >.< DNS >.<VCN DNS >.oraclevcn.com * IP VCN DNS • DHCP DNS 翻 DNS • DNS VCN DHCP • oraclevcn.com • VCN • DNS VCN Copyright © 2022, Oracle and/or its affiliates. 36
  37. 1 VCN VCN VCN VCN ( ) / VCN VCN

    OCI VCN Copyright © 2022, Oracle and/or its affiliates. 37
  38. CIDR 0.0.0.0/0 CIDR Dest Ingres s 0.0.0.0/0 Tcp 80 Egres

    s 10.0.2.0/24 Tcp 1521 CIDR Dest Ingress 10.0.1.0/24 Tcp 1521 Egress OCI -1 VCN 10.0.0.0/16 バックエンド、 10.0.2.0/24 フロントエンド、 10.0.1.0/24 SL- X SL- RT- RT- CIDR 0.0.0.0/0 NAT/ /DRG VCN Copyright © 2022, Oracle and/or its affiliates. 38
  39. • (VCN) • • IP IP • OCI • NAT

    • VPN FastConnect Copyright © 2022, Oracle and/or its affiliates. 39
  40. – • https://docs.cloud.oracle.com/ja-jp/iaas/Content/Network/Concepts/overview.htm – (VCN) • https://community.oracle.com/docs/DOC-1019114 VCN Copyright ©

    2022, Oracle and/or its affiliates. 40
  41. Oracle Cloud Infrastructure ( / ) • API - https://docs.cloud.oracle.com/iaas/api/

    • - https://docs.cloud.oracle.com/ja- jp/iaas/Content/General/Reference/aqswhitepapers.htm • - https://docs.cloud.oracle.com/iaas/releasenotes/ • (Known Issues) - https://docs.cloud.oracle.com/ja-jp/iaas/Content/knownissues.htm • OCI (PPT SVG Visio ) - https://docs.cloud.oracle.com/ja- jp/iaas/Content/General/Reference/graphicsfordiagrams.htm - ※ Oracle Cloud Infrastructure Copyright © 2022, Oracle and/or its affiliates. 41
  42. Oracle Cloud Infrastructure • https://oracle-japan.github.io/ocidocs/ - Oracle Cloud Infrastructure •

    https://oracle-japan.github.io/ocitutorials/ Oracle Cloud • https://www.oracle.com/goto/ocws-jp Oracle • https://www.oracle.com/search/events/_/N-2bu/ Oracle Cloud Infrastructure – General Forum ( ) • https://cloudcustomerconnect.oracle.com/resources/9c8fa8f96f/summary Oracle Cloud Infrastructure Copyright © 2022, Oracle and/or its affiliates. 42
  43. Thank you 43 Copyright © 2022, Oracle and/or its affiliates.

  44. None
  45. Our mission is to help people see data in new

    ways, discover insights, unlock endless possibilities.