Upgrade to Pro — share decks privately, control downloads, hide ads and more …

20221220 Azure Public IP 路由偏好教戰手冊

Phil Huang
December 20, 2022

20221220 Azure Public IP 路由偏好教戰手冊

Phil Huang

December 20, 2022
Tweet

More Decks by Phil Huang

Other Decks in Technology

Transcript

  1. Azure Public IP 路由偏好教戰手冊
    Phil Huang
    Sr. Cloud Solution Architect
    2022/12/20
    以建立 Azure S2S VPN 為例

    View Slide

  2. Azure S2S VPN 建立方案選擇
    Azure Virtual Network Gateways
    Public IP via Microsoft
    Public IP via Internet

    View Slide

  3. First public IP address
    Azure Virtual Network Gateways
    • First public IP address 為該 Virtual Network Gateway 主要連線方式,故選擇適合的 Public IP 於此使
    用相當重要

    View Slide

  4. Routing Preference
    Azure Public IP Addresses
    V.S.
    Choose Microsoft network? Choose Internet?

    View Slide

  5. Hot / Cold Potato Routing
    Azure Public IP 路由偏好指南

    View Slide

  6. Azure 路由喜好設定
    熱馬鈴薯路由 (Hot potato routing) v.s. 冷馬鈴薯路由 (Cold potato routing)
    PoP: Point of Presence, 網路服務提供點
    Ref: https://learn.microsoft.com/en-us/azure/virtual-network/ip-services/routing-preference-overview
    Cold potato routing
    Hot potato routing

    View Slide

  7. View Slide

  8. Azure Public IP 路由偏好常見問題
    Q&A
    • Q1: 於 Azure 上的 Public IP 路由偏好選擇有什麼差異?
    • Q2: 是不是一律路由選擇偏好 Microsoft 一定就是最好的?
    • Q3: 要如何挑選區域及進行自我檢測呢?

    View Slide

  9. Azure Public IP 路由偏好常見問題
    Q&A
    • Q1: 於 Azure 上的 Public IP 路由偏好選擇有什麼差異?
    • A1: 路由路徑會不一樣,詳請後述
    • Q2: 是不是一律路由選擇偏好 Microsoft 一定就是最好的?
    • A2: 不一定,有可能選 Internet 反而比較快,而 Microsoft network 比較慢,需實測為主
    • Q3: 要如何挑選區域及進行自我檢測呢?
    • A4: 採用 Public IP 之前可以先進行自我簡單檢測

    View Slide

  10. Q1: 於 Azure 上的 Public IP 路
    由偏好選擇有什麼差異?
    Azure Public IP 路由偏好指南

    View Slide

  11. 我家網路
    我家網路
    HINET, Taiwan
    NTT, Japan
    HINET, Taiwan
    PCCW, HongKong
    Microsoft Backbone
    hkg31 -> hkg20 -> tyo31
    Routing Preference: Internet
    Routing Preference: Microsoft network

    View Slide

  12. Routing Preference: Internet
    Routing Preference: Microsoft network
    我家網路
    我家網路
    HINET, Taiwan
    HINET, Taiwan
    Microsoft Backbone
    tyo30 -> osa31
    PCCW, HongKong

    View Slide

  13. Routing Preference: Internet
    Routing Preference: Microsoft network
    我家網路
    我家網路
    HINET, Taiwan
    HINET, Taiwan
    TATA Communications
    PCCW, HongKong
    Microsoft Backbone
    hkg31 -> sg2

    View Slide

  14. Routing Preference: Internet
    Routing Preference: Microsoft network
    我家網路
    我家網路
    HINET, Taiwan
    HINET, Taiwan
    PCCW, HongKong
    PCCW, HongKong
    Microsoft Backbone
    hkg31

    View Slide

  15. Q2: 是不是一律路由選擇偏好
    Microsoft 一定就是最好的?
    Azure Public IP 路由偏好指南

    View Slide

  16. Avg. 50.8ms
    Routing Preference: Internet
    Routing Preference: Microsoft network
    Avg. 74.0ms

    View Slide

  17. Routing Preference: Internet
    Routing Preference: Microsoft network
    Avg. 53.4ms
    Avg. 55.6ms

    View Slide

  18. Routing Preference: Internet
    Routing Preference: Microsoft network
    Avg. 65.3ms
    Avg. 68.9ms

    View Slide

  19. Routing Preference: Internet
    Routing Preference: Microsoft network
    Avg. 38.1ms
    Avg. 35.8ms

    View Slide

  20. Q3: 要如何挑選區域及進行自
    我檢測呢?
    Azure Public IP 路由偏好指南

    View Slide

  21. 新增 Public IP address
    Allow Internet resource to communicate inbound to Azure resource
    By region

    View Slide

  22. My Traceroute
    Network Diagnostic Tool that combines Ping and Traceroute
    [localhost]$ mtr -z -b

    View Slide

  23. nitefood / asn
    ASN Lookup Tool and Traceroute Server
    Ref: https://github.com/nitefood/asn

    View Slide

  24. Invent with purpose.

    View Slide