Connecting Edge Nodes to IEF Through Direct Connect or VPN
Scenario
If an edge node cannot access IEF through a public network, it can connect to Huawei Cloud Virtual Private Cloud (VPC) through Direct Connect or Virtual Private Network (VPN), and then connect VPC to IEF through the private and secure channel provided by a VPC endpoint.
Connection Solution
Before deploying applications on an edge node, ensure that the edge node can communicate with IEF, SWR and OBS. If the edge node cannot connect to IEF through a public network, connect the edge node to Huawei Cloud VPC through VPN or Direct Connect, and then enable VPC to access IEF, SWR and OBS through VPC endpoints. Figure 1 shows the connection solution.
To connect edge nodes to IEF, you need to create the following three endpoints.
- ief-placement: for managing and upgrading edge nodes
- ief-edgeaccess: for sending messages between edge nodes and cloud services
- ief-telemetry: for uploading monitoring data and logs on edge nodes
To connect edge nodes to SWR, you need to create one endpoint. To connect edge nodes to OBS, you need to create an OBS endpoint and a DNS endpoint. (OBS can only be accessed through the domain name when the OBS address is dynamically resolved by DNS.)
Procedure
- Create a VPC.
For details, see Creating a VPC.
You can also use an existing VPC.
The VPC CIDR block cannot overlap the IDC CIDR block.
- Connect the edge node to a VPC through Direct Connect or VPN.
For details, visit the following links:
- Create IEF endpoints to enable the connection between the edge node and IEF.
You need to create three endpoints: ief-placement, ief-edgeaccess, and ief-telemetry. The procedure is as follows:
- Log in to the VPC Endpoint console and click Buy VPC Endpoint in the upper right corner.
- Select the IEF endpoints and VPC.
Figure 2 Creating IEF endpoints
- Click Next, confirm the information, and click Submit.
- Create an SWR endpoint so that the edge node can pull container images from SWR.
The procedure is the same as that of creating IEF endpoints.Figure 3 Creating an SWR endpoint
- Create DNS and OBS endpoints for edge nodes to access OBS.
For details, see Accessing OBS.
- Add the hosts configuration for the edge node.
Query the four IP addresses of IEF and SWR endpoints and add them in the /etc/hosts file of the edge node.
Figure 4 Querying IP addresses of the endpoints
Open the /etc/hosts file and add the IP addresses at the end of the file so that the domain names for accessing IEF and SWR point to the IP addresses of the corresponding endpoints.
Change the IP addresses and domain names based on the site requirements. The IP addresses are the ones obtained in the preceding step, and the domain names vary depending on the region. For details, see Domain Name.
192.168.2.20 ief2-placement.cn-north-1.myhuaweicloud.com 192.168.2.142 ief2-edgeaccess.cn-north-1.myhuaweicloud.com 192.168.2.106 ief2-telemetry.cn-north-1.myhuaweicloud.com 192.168.2.118 swr.cn-north-1.myhuaweicloud.com
- Register the edge node and use IEF to manage the edge node. For details, see Edge Node Overview.
Domain Name
ief-edgeaccess of the platinum edition has an independent address, which is the value of Access Domain on the Dashboard page of the IEF console.
Region |
Name |
Domain Name |
---|---|---|
CN North-Beijing1 |
ief-placement |
ief2-placement.cn-north-1.myhuaweicloud.com |
ief-edgeaccess |
ief2-edgeaccess.cn-north-1.myhuaweicloud.com |
|
ief-telemetry |
ief2-telemetry.cn-north-1.myhuaweicloud.com |
|
swr |
swr.cn-north-1.myhuaweicloud.com |
|
CN North-Beijing4 |
ief-placement |
ief2-placement.cn-north-4.myhuaweicloud.com |
ief-edgeaccess |
ief2-edgeaccess.cn-north-4.myhuaweicloud.com |
|
ief-telemetry |
ief2-telemetry.cn-north-4.myhuaweicloud.com |
|
swr |
swr.cn-north-4.myhuaweicloud.com |
|
CN South-Guangzhou |
ief-placement |
ief-placement.cn-south-1.myhuaweicloud.com |
ief-edgeaccess |
ief-edgeaccess.cn-south-1.myhuaweicloud.com |
|
ief-telemetry |
ief-telemetry.cn-south-1.myhuaweicloud.com |
|
swr |
swr.cn-south-1.myhuaweicloud.com |
|
CN East-Shanghai1 |
ief-placement |
ief-placement.cn-east-3.myhuaweicloud.com |
ief-edgeaccess |
ief-edgeaccess.cn-east-3.myhuaweicloud.com |
|
ief-telemetry |
ief-telemetry.cn-east-3.myhuaweicloud.com |
|
swr |
swr.cn-east-3.myhuaweicloud.com |
|
CN East-Shanghai2 |
ief-placement |
ief2-placement.cn-east-2.myhuaweicloud.com |
ief-edgeaccess |
ief2-edgeaccess.cn-east-2.myhuaweicloud.com |
|
ief-telemetry |
ief2-telemetry.cn-east-2.myhuaweicloud.com |
|
swr |
swr.cn-east-2.myhuaweicloud.com |
Feedback
Was this page helpful?
Provide feedbackThank you very much for your feedback. We will continue working to improve the documentation.See the reply and handling status in My Cloud VOC.
For any further questions, feel free to contact us through the chatbot.
Chatbot