Product Advantages

Flexible Configuration

You can create VPCs, add subnets, specify IP address ranges, and configure DHCP and route tables. You can configure the same VPC for ECSs that are in different availability zones (AZs).

Secure and Reliable

Each VPC is completely logically isolated from other VPCs using the tunneling technology. By default, different VPCs cannot communicate with each other. Network ACLs are provided to protect subnets, and security groups are provided to protect ECSs. The network ACLs and security groups add additional layers of security to your VPCs, making your network very secure.

Figure 1 Secure and Reliable

Interconnectivity

By default, instances in a VPC cannot access the Internet. You can leverage EIPs, load balancers, NAT gateways, VPN connections, and Direct Connect connections to enable access to or from the Internet.

By default, instances in two VPCs cannot communicate with each other. You can create a VPC peering connection to enable the instances in the two VPCs in the same region to communicate with each other using private IP addresses.

Layer 2 Connection Gateway can establish network communication between the cloud and on-premises networks and allow you to migrate data center or private cloud services to the cloud without changing subnets.

Multiple connectivity options are provided to meet enterprises' diverse service requirements for the cloud, to allow you to deploy enterprise applications with ease, and to lower enterprise IT operation and maintenance (O&M) costs.

Figure 2 Interconnectivity

High-Speed Access

Dynamic BGP is used to provide access to various carrier networks. For example, up to 21 dynamic BGP connections are established to multiple carriers. The dynamic BGP connections enable real-time failover based on the preset routing protocols, ensuring high network stability, low network latency, and smooth access to services on the cloud.

Advantage Comparison

Table 1 lists the advantages of a VPC over a traditional IDC.

Table 1 Comparison between a VPC and a traditional IDC

Item

VPC

Traditional IDC

Deployment cycle

  • You do not need to perform complex engineering deployment, such as engineering planning and cabling.
  • You can determine your networks, subnets, and routes on HUAWEI CLOUD based on service requirements.

You need to set up networks and perform tests. The entire process takes a long time and requires professional technical support.

Total cost

HUAWEI CLOUD provides flexible billing modes for network services, so you can select the one that can best fit your business needs. In addition, you do not need to pay for upfront costs and network O&M costs, lowering total cost of ownership (TCO).

You need to invest heavily in equipment rooms, power supply, construction, and hardware materials. You also need professional O&M teams to ensure network security. Asset management costs increase with business changes.

Flexibility

A variety of network services are available for you to choose from. If you need more network resources (such as bandwidth), dynamic expansion can be performed conveniently and quickly.

You have to strictly comply with the network plan to complete the service deployment. When there are changes in your service requirements, the network cannot be dynamically adjusted.

Security

VPCs are logically isolated from each other. You can leverage security features such as network ACLs and security groups, and even security services like Advanced Anti-DDoS (AAD) to secure your cloud resources.

The network is difficult to maintain and has poor security. Therefore, you need professional personnel to ensure network security.