Help Center> Cloud Connect> Best Practices> Authorizing Network Instances Across Accounts

Authorizing Network Instances Across Accounts

Scenarios

Cloud Connect enables you to load the VPCs of other users to your own cloud connections so that your VPCs can communicate with those of other users.

Figure 1 shows the networking topology.

Figure 1 Networking
  • Account A: This is your account. You need to create a cloud connection, ask account B to authorize VPC 2 to you, and load VPC 2 to your cloud connection.
  • Account B: authorizes VPC 2 to you.

    If multiple VPCs in different regions under account B need to communicate with each other, you can ask account B to authorize all these VPCs to you.

  • After account B authorizes VPC 2, you can load VPC 1 and VPC 2 to your cloud connection so that the two VPCs can communicate with each other. Account B does not need to create a cloud connection, purchase a bandwidth package, or configure an inter-region bandwidth.

Prerequisites

You have the permissions of Tenant Guest, VPC Administrator, and Cross Connect Administrator in the region where the authorized VPC resides.

In this scenario, account A must have the permissions of the preceding roles in the CN South-Guangzhou region where VPC 2 of account B resides.

For details, see Permission Management.

Procedure

  1. Create a VPC using account A, create another VPC using account B, and ensure that CIDR blocks of the two VPCs do not conflict with each other.

    Account A VPC: 172.16.100.0/24

    Account B VPC: 172.16.200.0/24

    For details, see Creating a VPC.

  2. Create a cloud connection using your account.

    For details, see Creating a Cloud Connection.

  3. Ask account B to authorize VPC 2 to your account.

    For details, see Authorizing a Network Instance.

  4. Load the two VPCs to your cloud connection.

    Load VPC 2 of account B. For details, see Loading Network Instances of Others.

    Load VPC 1. For details, see Loading a Network Instance.

  5. Buy a bandwidth package using your account and bind it to your cloud connection.

    For details, see Purchasing a Bandwidth Package.

  6. Assign inter-region bandwidths using your account.

    For details, see Assigning Inter-Region Bandwidth.

Verification

View the routes of the cloud connection and verify that network communications between the VPCs are normal.

For details, see Viewing Route Information.