A global retail distribution company is establishing hybrid connectivity between its primary on-premises fulfillment hubs and Google Cloud to process real-time inventory transactions. The connection requires a guaranteed sustained throughput of 12 Gbps and must adhere to a strict 99.99% availability SLA. Architecturally, the security team mandates centralized administration of firewall rules and network subnets, while allowing application workloads running in isolated project environments to communicate directly with on-premises databases. Which network architecture and hybrid connectivity design should the cloud architect recommend?
- Provision Dedicated Interconnect with redundant circuits across two separate edge availability domains in two distinct metros, configured with Cloud Router BGP routing, and deploy a Shared VPC network topology where the host project manages the hybrid interconnect and subnets while attached service projects host the application workloads.Cevap
- BDeploy multiple High Availability (HA) Cloud VPN gateways with active-active tunnels and Cloud Router BGP dynamic routing, connected into a Shared VPC host project with attached service projects.
- CEstablish Dedicated Interconnect with 99.99% SLA into a central Transit VPC, and configure VPC Network Peering between the Transit VPC and all application spoke VPCs to allow spoke instances to access on-premises resources.
- DProvision Partner Interconnect with Layer 2 connections aggregated across multiple VPCs using standard VPC Network Peering to link application environments directly to the on-premises routers.
Cevap
Provision Dedicated Interconnect with redundant circuits across two distinct metros to meet the 99.99% SLA and 12 Gbps throughput, combined with a Shared VPC host/service project model to maintain centralized network governance and transitivity to on-premises resources.
Dedicated Interconnect is required to support high sustained throughput (>10 Gbps) and achieve a 99.99% SLA when configured with redundant links across two metros. A Shared VPC topology satisfies the requirement for centralized network administration by placing subnets, firewall policies, and Cloud Routers in a host project, while allowing application workloads in attached service projects to communicate natively with on-premises resources over the hybrid connection.
Adım Adım Çözüm
Anahtar Kavram
Hybrid Connectivity Selection & Shared VPC Topology
Tahmini Süre:2m 0s