Layer 2 Connection Gateway

A Layer 2 connection gateway (L2CG) is a virtual tunnel gateway that can work with a Direct Connect or VPN connection to establish network communication between the cloud and on-premises networks. The gateway allows you to migrate data center or private cloud services to the cloud without changing subnets and IP addresses.

A Direct Connect or VPN connection establishes a Layer 3 network tunnel between the cloud and on-premises networks, but the subnets on the cloud and on-premises networks must not overlap. If the cloud and on-premises networks are on the same subnet but need to communicate with each other, you can use a L2CG to enable the communication at a Layer 2 network.

Figure 1 shows the networking diagram of a L2CG.
Figure 1 L2CG networking

A L2CG is a tunnel gateway of a VPC and corresponds to a tunnel gateway of your data center. A L2CG can work together with a Direct Connect or VPN connection to establish a Layer 2 network between a VPC and your data center.

A Layer 2 connection connects a VPC subnet to a L2CG and specifies the L2CG to connect to the tunnel gateway in an enterprise data center so that the VPC subnet can communicate with the subnet in the enterprise data center at the Layer 2 network.