SlideShare uma empresa Scribd logo
1 de 75
Copyright © 2016, Oracle and/or its affiliates. All rights reserved. |
Oracle Cloud Infrastructure
OCI Classic v2.7
2017 12
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
Safe Harbor Statement
3
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
• Oracle Cloud Infrastructure (OCI)
• 2017 9 Bare Metal Cloud Service (BMC) Oracle Cloud Infrastructure (OCI) Oracle Public
Cloud (OPC) Oracle Cloud Infrastructure Classic (OCI Classic)
• OCI Classic OCI Classic PaaS
Oracle Cloud Infrastructure( Bare Metal Cloud) Oracle Ravello
–
•
Oracle Cloud
(http://cloud.oracle.com)
4
• Oracle Cloud Infrastructure Compute Classic
• Oracle Database Cloud Service (on OCI Classic)
• Oracle Java Cloud Service (on OCI Classic)
• OCI SOA Cloud Service (on OCI Classic)
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
OCI Classic
5
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 7
OCI Classic SDN (IP )
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
• Oracle Cloud 1
• Oracle
IP IP
• 30bit
L3
• PaaS
8
Oracle Cloud
Instance1
eth0
Instance2 Instance3 Instance4
eth0 eth0 eth0
: 10.168.0.0/16
Instance5
eth0
Internet / FastConnect
.22/30 .42/30
Identity Domain 1 Identity Domain 2
.50/30 .134/30 .6/30
NAT
129.152.148.131
( IP)
129.152.148.130
( IP)
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
• 2016 10
( )
•
–
• IP
NIC IP
10
Instance1
eth0 eth1
IP : 192.168.3.0/24
IP :
192.168.2.0/24
IP :
192.168.2.0/24
Instance2 Instance3 Instance4
eth1 eth2 eth1 eth2 eth0 eth1
: 10.32.1.0/24
Instance5
eth1 eth1
internet
.21 .42.2 .3
Identity Domain 1 Identity Domain 2
.4.2 .3 .2 .3
129.152.148.130
( IP)
129.152.148.131
( IP)
IP
NAT
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
IP
…
1.
2. IP
3. ( NIC)
4. VPN (Corente Cloud Gateway)
WAN (GRE )
5. / (
/ )
6. NIC MAC
( MAC )
11
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 12
Web
VPN VPN
VPN
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 13
Oracle Cloud
OCI Classic
VPN-GW
(Corente
Services
Gateway)
VPN-GW
VPN
Web
(Compute Cloud Service)
(Java Cloud Service*)
(Database Cloud Service*)
* (2017 11 ) Java Cloud Service/Database Cloud Service IP
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
OCI Classic
14
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
• IP
– IP
– IP
– NIC
– NIC
– *
– *
– *
– IP *
– IP *
•
–
–
–
– IP
– IP
• VPN
– VPNaaS
– Corente**
– FastConnect
15
OCI Classic
* (2017 11 ) * (
)
** Corente 2017 10 (17.4.2)
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
IP – IP
16
IP 1
192.168.1.0/24
IP 2
192.168.2.0/24
.2 .3 .2 .3
IP (IPNetworks)
•
• 16bit
( : 10.0.0.0 – 10.0.255.255)
• IP
•
( )
• 1
( DHCP DNS )
•
•
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
IP – IP
17
IP 1
192.168.1.0/24
IP 2
192.168.2.0/24
IP
.2 .3 .2 .3
IP (IPNetworkExchanges)
• IP IP
• IP
• IP :IP = 1:
IP 1 IP
•
.1 .1
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
IP – NIC
18
eth0
: 10.32.1.0/24
.21
eth1 eth2 eth3 eth7
IP : 192.168.1.0/24
192.168.2.0/24
192.168.3.0/24
192.168.7.0/24
.2 .2 .2 .2
NIC (VirtualNICs)
• 8
• IP 1 NIC
• (= )
• 8 IP
• IP
IP
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
IP – NIC
19
eth0
.2
eth0
.3
IP (192.168.1.0/24)
VPN VPN
eth0 eth0
eth1 eth1
.8 .9
NIC (VirtualNICSets)
• NIC ( OK)
• NIC OK
• ACL
internet
192.168.101.0/24
(Routes)
•
• IP (CIDR)
NIC
• IP
ECMP
LAN
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
IP –
20
Instance1
(AP)
eth0
IP
Instance2
(AP)
eth0
• NIC /
(ACL)
•
NIC
Instance3
(DB)
eth0
NIC (AP) NIC (DB)
allow-ping
: icmp
:
: icmp
:
1521-egress
-to-DB
1521-ingress
-from-AP
: 1521
:
: DB
: 1521
:
: AP
* (2017 11 ) ( )
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
IP – IP *
21
Instance1
eth0
IP
Instance2
eth0
IP (IPAddressReservations)
•
IP 1 1NAT IP
NIC
• IP ( IP)
NIC
GIP
NAT
.2 .3
GIP
internet
NAT
* (2017 11 ) ( )
•
IP 1 1NAT IP
NIC
• IP
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
IP – DNS
22
web1
eth0
IP (192.168.1.0/24)
web2
eth0
DNS
• IP 1 IP
DNS
• IP
• ( ) A
IP DNS
• DNS (IP
VPN
)
.2 .3
DNS
.1
web1.ipnet1.abc.com. IN A 192.168.1.2
web2.ipnet1.abc.com. IN A 192.168.1.3
www.abc.com. IN A 192.168.1.2
www.abc.com. IN A 192.168.1.3
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 23
Instance1
eth0 eth1
IP
Instance2
eth1
Data Center 1
Instance3
eth0
Data Center 2
WAN
internet
•
• IP PaaS
IP
• IP
Storage Cloud
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
– IP
24
Instance1
eth0 eth1
IP
Instance2
eth1
internet
IP (IPReservations)
•
IP NAT
•
IP
• Database Cloud Service PaaS
1 IP
IP
NAT
NAT (IPAssociations)
• IP ( IP)
IP 1 1
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
– DNS
25
web1
eth0
web2
eth0
DNS
• DNS
DHCP
•
IP
• ( )
•
(Compute-
<domain>.oraclecloud.internal)
DNS
web1.compute-mydomain.oraclecloud.internal. IN A 10.168.x.y
web2.compute-mydomain.oraclecloud.internal. IN A 10.168.x.y
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
–
26
AP1
eth0
AP2
eth0
DB
eth0
seclist-ap seclist-db
: seclist-ap
: seclist-db
: tcp/1521
: 0.0.0.0/0
: seclist-ap
: tcp/443
: ( IP)
: seclist-db
: tcp/22
IP
• Oracle Cloud IP
• IPv4 CIDR
•
•
• (from)
(to)
•
IP
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
IP
28
1. PaaS(DBCS, JCS ) IP
– : XXCOM (USCOM-CENTRAL-1, USCOM-EAST-1, GBCOM-
SOUTH-1, AUCOM-EAST-1 ) DC(AP5_Z11)
– : AP5_Z11( DC) / US00n_Znn / EM00n_Znn
• PaaS ComputeCS
PaaS GRE ( ) NAT
2. IP (=ACL) &
IP NAT (IP )
– : XXCOM AP5_Z11( DC) US006_Znn
– : US00n_Znn / EM00n_Znn
• ( IP )
New!
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 29
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
IP
30
OCI Classic
(SecRules)
+ +
(SecurityRules)
NIC
+
+ /
+
/ IP
NIC
NICOracle Cloud →
Oracle Cloud → IP
Oracle Cloud →
Oracle Cloud → IP
NIC
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
• /
•
/
(
)
– (Deny)
•
– (Reject)
•
– (Permit)
•
( )
31
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
•
–
–
–
32
Ins Ins Ins
A B
※1 8
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
•
• ( or IP
) ( or )
33
(SecRules)
?
?
OCI Classic →
→ IP
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
•
•
•
–
• TCP
• UDP
• ICMP
• GRE
• ESP
– ~
34
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
• IP
•
• IP
(IP )
•
35
IP
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 36
8
1
10
n n
1
IP
1
n
Oracle Cloud(PaaS / IaaS)
/
/
IP
IP
IP
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 37
•
– →
:
– :
•
•
• DBCS PaaS
– DBCS (
DBCS )
– : DBCS
Compute DBCS
Seclist-AP
Compute DBCS
Seclist-DB
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
IP
•
–
–
–
•
• IP
• IP
38
(REST API SecurityRules)
ACL ?
( / )
IP
IP
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
OCI Classic
39
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 41
OCI Classic
•
• Oracle Cloud
SSL
•
• VPN
• IPsec
•
• Oracle Cloud DC
• Oracle
•
(1Gbps / 10Gbps)
• Oracle Cloud
•
+ SSL
VPN
(IPsec)
Oracle
FastConnect
Standard
Edition
Partner
Edition
(NTT-
Com,Verizon
,BT )
Oracle Cloud
Oracle Cloud
i
Oracle Cloud
NW
NW
Oracle
Oracle
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
VPN OCI Classic
Virtual Private Network(VPN)
VPN
Point-to-Point( )
42
On-Premise Oracle Cloud
VPN
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
VPN
43
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
• Corente
–
– Compute
– IP (GRE )
• VPNaaS
– VPN
–
– IP
Oracle Confidential – Internal 44
2 VPN
IP
LAN
GRE
internet
IPsec
Corente
Service Gateway
Corente
Service Gateway
IP
LAN
internet
IPsec
VPNaaS
Compute JCS DBCS
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
VPN
• 2017 10 20 ( ) Corente
+ VPNaaS ( ) VPNaaS
– Corente VPNaaS (Corente
)
• VPNaaS IP ( VPN
)
– : RAC Data Guard Database Cloud Service
(2017 12 ) IP VPNaaS
NAT
Confidential – Oracle Internal/Restricted/Highly Restricted 45
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
VPN (2017 10 )
DBCS/JCS
?
YES
NO
IP
+
2017 10 ?
YES
NO
Corente + NW(GRE)
RAC
Data Guard ?
YES
NO
VPNaaS + IP
IPsec ?
NO
YES
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
VPN - VPNaaS
47
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
VPNaaS
Confidential – Oracle Internal/Restricted/Highly Restricted 48
VPNaaS
(
DatabaseCompute
Compute
Gateway
Gateway
IP Network
Compute
IP Exchange
IP Network
Oracle Cloud
NAT
• VPN VPNaaS)
• VPN
•
NAT
•
IP Network
• IP Network IP Exchange
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
VPNaaS
• VPN
IPsec VPNaaS
Oracle
•
– Cicso 2921
– Cisco ISR 4331
– Cisco ASA5505
– Checkpoint 3200
– Palo Alto 3020
– FortiGate-200D
•
49
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
VPN (1)
•
–
• IP
– (IP
)
– IP IP
• vNICset( )
•
– WAN IP(NAT )
•
– (
)
• (PSK)
– ( )
• IKE ID( )
– IP_ADDR_V4 VPNaaS IP
50
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
VPN (2)
• 1 IKE
– 1(IKE) VPNaaS
• 2 ESP
– 2(ESP) VPNaaS
•
– 2 PFS : Perfect Forward
Securecy
51
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
VPNaaS TIPS
• IKEv1 (IKEv1 IKEv2 )
• VPN ( VPN )
– IP N
• VPN VPNaaS IP IP
• VPN VPN (=
IP )
– (= IP)
– (= )
– (PSK)
– IP (= IP )
• 1 VPN 1
• VPNaaS
52
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
VPN
•
– VPN > VPNaaS > VPN >
• VPNaaS (=Corente Services
Gateway) Openswan
– Openswan
– strongSwan
– Libreswan
53
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
VPN - Corente
54
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
VPN – Corente
55
Corente Services Gateway
• Corente Services Gateway
– IPsec
– OCI Classic
– VPN
– OS
Oracle Compute Cloud Cloud
App Net Manager
– VPN
Corente Services Gateway
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
VPN – Corente
56
DC VPN
• 1. Corente Services Gateway
– Oracle Technology Network Corente Services Gateway
–
–
– Oracle (Oracle Cloud )
• 2. IPsec
– IPsec
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
VPN – Corente
57
DC GW Corente Services Gateway
•
A)
• ( )
– Oracle VM 3.4.1
– Xen 4.4, VMWare ESX5.5
– Citrix XenServer 6.2
– Microsoft Windows Server 2012 R2 Hyper-V
B) Corente
•
• (Corente AppNet
Manager)
→
Oracle Cloud
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
VPN – Corente
• DC Corente
–
• Corente → IP (ANY) 443/TCP ( )
• Corente → IP (ANY) 53/UDP ( )
• Corente 1025-65535/TCP → IP (ANY) 551/TCP (Corente Service Port)
• Corente 551/UDP → IP (ANY) 551/UDP (Corente Service Port)
–
• IP (ANY) 1025-65535/TCP → Corente 551/TCP (Corente Service Port)
• IP (ANY) 551/UDP → Corente 551/UDP (Corente Service Port)
58
DC GW Corente Services Gateway
Corente Services Gateway Deployment Guide - 2.2 Network Requirements
http://docs.oracle.com/cd/E74662_01/E80339/html/install-plan-lan.html#install-plan-lan-fw
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
VPN – Corente
DC GW Corente Services Gateway
59
: 1.5 GHz Intel-based x86 compatible server
: 1 GB RAM
: 40 GB IDE/SATA
: Integrated 10/100/1000M Ethernet Interfaces
Oracle VM Server for x86 Release 3.4.1 or later
Xen 4.4
VMware ESX 5.5
Citrix XenServer 6.2
Microsoft Windows Server 2012 R2 Hyper-V
※Corente Services Gateway Deployment Guide
(http://docs.oracle.com/cd/E74662_01/E80339/E80339.pdf)
2.1 Corente Services Gateway Installation Requirements
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
VPN – Corente
60
DC GW IPsec
•
(Certified Configuration) IPsec
Corente Services Gateway
• My Oracle Support
– Cisco ASA 5505 (Doc ID 2153452.1)
– SonicWall TZ190 (Doc ID 2153603.1)
– Juniper JuneOS15 (Doc ID 2164001.1)
•
– Cisco CSR1000v (How to connect an application on Ravello
to Oracle IaaS/PaaS services (e.g. DBCS etc.) over VPN)
Oracle Cloud
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
VPN – Corente
• Oracle Compute Cloud
IP
Oracle Cloud IP
IP
GRE
61
NW IP
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
VPN – Corente
• Corente Services Gateway
Compute / PaaS
GRE
• Oracle Technology Network (Linux,
Windows )
• : 10.0.0.0/8
62
NW GRE
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 63
Corente Active / Active HA ( IPsec )
VPN
IPsec
IPsec
CSG01
(Active)
CSG02
(Active)
eth0
IP
192.168.55.0/24
.8
.9
VMvNIC Set:A
Name IP Address Next Hop vNIC Distance
Outbound 192.168.0.0 A 0
Routes:
route add -net
192.168.0.0/24
gw 192.168.55.1
IPsec
DC
192.168.0.0/24
(VRRP, HSRP,
MHSRP, etc) .100
Static Route
Cloud Failover
eth0eth1
eth1
OCI Classic
VM
.2
IPsec
F/W
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
Corente Services Gateway IPsec
• /
• Corente Services Gateway
64
VPN
• Oracle Cloud
• ( ) NAT / NAPT
• IPsec VPN
• ( )NAT / NAPT• AppNet Manager
•
• IP( 1 )
• IPsec
• IPsec
• VPN IP (IP )
•
• VPN IPsec
•
• AppNet Manager IPsec
• Oracle Cloud
•
VPN
Oracle Cloud
LAN
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
VPN
65
※ (2017 12 ) Database Cloud Service (RAC Data Guard) IP
IP VPN IP
GRE
NW VPNGW
IP
VPNaaS IPsec &
Oracle Cloud Infrastructure Compute Classic - 16 VPNaaS VPN
Corente
IPsec
Oracle Cloud Infrastructure Compute Classic - VPN
(Active-Active HA) - HA
Corente
Corente Services Gateway IP
VPN
+
GRE ※
Corente
IPsec
Oracle Cloud Infrastructure Compute Classic - VPN
(Active-Active HA) - HA
Corente Corente Services Gateway VPN
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 66
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
• Oracle Cloud
VPN
•
• Oracle Cloud IP
1.
Compute
eth0
IP
192.168.1.0/24
Compute Java AP
eth0 eth0
internet
.2 .3 .4
IP
Oracle Cloud VPN IP
IP
67
VPNaaS
.253
Database
eth0
.5
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
• Web
•
• VPN
• (Bastion)
2.
Web
eth1
Back: 192.168.2.0/24
AP* DB* Bastion
eth0 eth0eth1
.2.3 .5 .2
IP
Oracle Cloud
eth0
.2
internet
IP
Web
VPN
IP
69
eth0
.4
NAT
NAT
Front: 192.168.0.0/24
IP
VPNaaS
.253
Mgmt:
192.168.1.0/24
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
TIPS
70
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
OCI Classic
• IP IP ( )IP
( )IP
– DHCP
IP
• IP ( )IP
– DHCP
( DNS )
• IP IP
– IP Site-to-site VPN
71
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
• OCI Classic DHCP
OS
– Oracle Linux (eth0 )
72
OracleLinux1
eth2
IP 1
IP 2
eth0 eth1
✓
DNS
✓
IP OracleLinux2
eth0
eth1 eth2
✓ IP 2
DNS
✓IP 2
IP 1
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
• IP
• IP(IP ) IP
73
IP
IP
internet
NAT
GW
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
( )
• : IP
– (Linux)
• sudo ip route add 10.196.0.0/16 via $(ip route | awk '/default/ {print $3}’) dev eth0
• sudo ip route change default via 192.168.1.1 dev eth1
– IP ssh
( ssh )
74
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
( )
•
”instance” ( )
• ”userdata” ( {} )
75
"instances": [
{
"attributes": {
"userdata": {
"pre-bootstrap": {
"script": [
"ip route add 10.196.0.0/16 via $(ip route | awk '/default/ {print $3}') dev eth0",
"ip route change default via 192.168.1.1 dev eth1"
]
}
}
},
xxxxxx
}
]
※
10.196.0.0/16 -> IP
Eth0 -> NIC
192.168.1.1 -> IP (1 )
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
NIC IP
76
• IP 1
IP
• 1
→
IPeth0
(10.x.x.x)
eth1
(192.168.1.2)
eth2
(192.168.2.2)
internet
NAT
GIP2GIP1 GIP3
IPnet1 IPnet2
sudo ip rule add from 192.168.1.2 table 100 prio 1000
sudo ip rule add from 192.168.2.2 table 200 prio 1000
sudo ip route add default via 192.168.1.1 dev eth1 table 100
sudo ip route add default via 192.168.2.1 dev eth2 table 200
IPDefault GW
IP
※ IP
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
1 NIC IP
(IP )
77
• IP
NIC IP
• IP NIC
IP IP
IP
eth0
192.168.1.2
192.168.1.10
IP (192.168.1.0/24)
IP :192.168.1.10/32
: 1 eth0 (vNICSet )
$ sudo ip addr add 192.168.1.10/32 dev eth0 label eth0:1
$ ip addr list eth0 | grep inet
inet 192.168.1.2/24 brd 192.168.1.255 scope global eth0
inet 192.168.1.10/24 scope global secondary eth0:1
IP
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 78
Instance1
eth0
Instance2
eth0
internet
IP
NAT
Active Standby
35.x.x.x ( IP)
10.x.x.1
( IP)
10.x.x.2
( IP)
IP
Instance1
Instance1
eth0
Instance2
eth0
internet
IP
NAT
Active Standby
35.x.x.x ( IP)
10.x.x.1
( IP)
IP
10.x.x.2
( IP)
• IP IP Instance 1
• IP
• Instance1 IP
IP Instance2
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. |
Instance1 Instance2
IP
79
eth1
192.168.1.3
eth1
192.168.1.4
IP
(192.168.1.0/24)
Instance1
• Instance1 Instance2
eth1 2 IP
※
• 2 IP
192.168.1.11eth1:1
Instance
eth1
Active Standby
• IP NIC OS IP
2 IP
• OCI Classic 2 IP
※ L2 2
IP
※ NIC
192.168.1.11
Instance1
eth1
192.168.1.2
: 192.168.1.11
Instance1 Instance2
eth1
192.168.1.3
eth1
192.168.1.4
IP
(192.168.1.0/24)
192.168.1.11eth1:1
Instance
eth1
Active Standby
192.168.1.2
192.168.1.11
Instance2
eth1
Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 80
[非公開]Oracle Cloud Infrastructure Classic ネットワーク機能詳細

Mais conteúdo relacionado

Mais procurados

Oracle Cloud Infrastructure:2022年8月度サービス・アップデート
Oracle Cloud Infrastructure:2022年8月度サービス・アップデートOracle Cloud Infrastructure:2022年8月度サービス・アップデート
Oracle Cloud Infrastructure:2022年8月度サービス・アップデートオラクルエンジニア通信
 
【旧版】Oracle Database Cloud Service:サービス概要のご紹介 [2021年7月版]
【旧版】Oracle Database Cloud Service:サービス概要のご紹介 [2021年7月版]【旧版】Oracle Database Cloud Service:サービス概要のご紹介 [2021年7月版]
【旧版】Oracle Database Cloud Service:サービス概要のご紹介 [2021年7月版]オラクルエンジニア通信
 
Oracle GoldenGateでの資料採取(トラブル時に採取すべき資料)
Oracle GoldenGateでの資料採取(トラブル時に採取すべき資料)Oracle GoldenGateでの資料採取(トラブル時に採取すべき資料)
Oracle GoldenGateでの資料採取(トラブル時に採取すべき資料)オラクルエンジニア通信
 
OCI 購入モデルの整理と Universal Credit 最新情報(2021年2月17日版)
OCI 購入モデルの整理と Universal Credit 最新情報(2021年2月17日版)OCI 購入モデルの整理と Universal Credit 最新情報(2021年2月17日版)
OCI 購入モデルの整理と Universal Credit 最新情報(2021年2月17日版)オラクルエンジニア通信
 
[フルバージョン] WebLogic Server for OCI 活用のご提案 - TCO削減とシステムのモダナイズ
[フルバージョン] WebLogic Server for OCI 活用のご提案 - TCO削減とシステムのモダナイズ[フルバージョン] WebLogic Server for OCI 活用のご提案 - TCO削減とシステムのモダナイズ
[フルバージョン] WebLogic Server for OCI 活用のご提案 - TCO削減とシステムのモダナイズオラクルエンジニア通信
 
API Gateway - ヘッダー/クエリー変換、認証・認可機能詳細
API Gateway - ヘッダー/クエリー変換、認証・認可機能詳細API Gateway - ヘッダー/クエリー変換、認証・認可機能詳細
API Gateway - ヘッダー/クエリー変換、認証・認可機能詳細オラクルエンジニア通信
 
Oracle GoldenGate 19c を使用した 簡単データベース移行ガイド_v1.0
Oracle GoldenGate 19c を使用した 簡単データベース移行ガイド_v1.0Oracle GoldenGate 19c を使用した 簡単データベース移行ガイド_v1.0
Oracle GoldenGate 19c を使用した 簡単データベース移行ガイド_v1.0オラクルエンジニア通信
 
Oracle Cloud Platform:IDCSを使ったアイデンティティ・ドメイン管理者ガイド
Oracle Cloud Platform:IDCSを使ったアイデンティティ・ドメイン管理者ガイドOracle Cloud Platform:IDCSを使ったアイデンティティ・ドメイン管理者ガイド
Oracle Cloud Platform:IDCSを使ったアイデンティティ・ドメイン管理者ガイドオラクルエンジニア通信
 
GoldenGateテクニカルセミナー2「Oracle GoldenGate 新機能情報」(2016/5/11)
GoldenGateテクニカルセミナー2「Oracle GoldenGate 新機能情報」(2016/5/11)GoldenGateテクニカルセミナー2「Oracle GoldenGate 新機能情報」(2016/5/11)
GoldenGateテクニカルセミナー2「Oracle GoldenGate 新機能情報」(2016/5/11)オラクルエンジニア通信
 
オンプレミスからクラウドへ:Oracle Databaseの移行ベストプラクティスを解説 (Oracle Cloudウェビナーシリーズ: 2021年2月18日)
オンプレミスからクラウドへ:Oracle Databaseの移行ベストプラクティスを解説 (Oracle Cloudウェビナーシリーズ: 2021年2月18日)オンプレミスからクラウドへ:Oracle Databaseの移行ベストプラクティスを解説 (Oracle Cloudウェビナーシリーズ: 2021年2月18日)
オンプレミスからクラウドへ:Oracle Databaseの移行ベストプラクティスを解説 (Oracle Cloudウェビナーシリーズ: 2021年2月18日)オラクルエンジニア通信
 
Oracle Cloud Infrastructure:2022年4月度サービス・アップデート
Oracle Cloud Infrastructure:2022年4月度サービス・アップデートOracle Cloud Infrastructure:2022年4月度サービス・アップデート
Oracle Cloud Infrastructure:2022年4月度サービス・アップデートオラクルエンジニア通信
 
Oracle cloud infrastructure shared file service comparison 20181019 ss
Oracle cloud infrastructure shared file service comparison 20181019 ssOracle cloud infrastructure shared file service comparison 20181019 ss
Oracle cloud infrastructure shared file service comparison 20181019 ssKenichi Sonoda
 

Mais procurados (20)

Oracle Cloud Infrastructure:2022年8月度サービス・アップデート
Oracle Cloud Infrastructure:2022年8月度サービス・アップデートOracle Cloud Infrastructure:2022年8月度サービス・アップデート
Oracle Cloud Infrastructure:2022年8月度サービス・アップデート
 
【旧版】Oracle Database Cloud Service:サービス概要のご紹介 [2021年7月版]
【旧版】Oracle Database Cloud Service:サービス概要のご紹介 [2021年7月版]【旧版】Oracle Database Cloud Service:サービス概要のご紹介 [2021年7月版]
【旧版】Oracle Database Cloud Service:サービス概要のご紹介 [2021年7月版]
 
Oracle GoldenGate Cloud Serviceユーザーズガイド
Oracle GoldenGate Cloud ServiceユーザーズガイドOracle GoldenGate Cloud Serviceユーザーズガイド
Oracle GoldenGate Cloud Serviceユーザーズガイド
 
Oracle GoldenGateでの資料採取(トラブル時に採取すべき資料)
Oracle GoldenGateでの資料採取(トラブル時に採取すべき資料)Oracle GoldenGateでの資料採取(トラブル時に採取すべき資料)
Oracle GoldenGateでの資料採取(トラブル時に採取すべき資料)
 
OCI 購入モデルの整理と Universal Credit 最新情報(2021年2月17日版)
OCI 購入モデルの整理と Universal Credit 最新情報(2021年2月17日版)OCI 購入モデルの整理と Universal Credit 最新情報(2021年2月17日版)
OCI 購入モデルの整理と Universal Credit 最新情報(2021年2月17日版)
 
[フルバージョン] WebLogic Server for OCI 活用のご提案 - TCO削減とシステムのモダナイズ
[フルバージョン] WebLogic Server for OCI 活用のご提案 - TCO削減とシステムのモダナイズ[フルバージョン] WebLogic Server for OCI 活用のご提案 - TCO削減とシステムのモダナイズ
[フルバージョン] WebLogic Server for OCI 活用のご提案 - TCO削減とシステムのモダナイズ
 
API Gateway - ヘッダー/クエリー変換、認証・認可機能詳細
API Gateway - ヘッダー/クエリー変換、認証・認可機能詳細API Gateway - ヘッダー/クエリー変換、認証・認可機能詳細
API Gateway - ヘッダー/クエリー変換、認証・認可機能詳細
 
Oracle GoldenGate 19c を使用した 簡単データベース移行ガイド_v1.0
Oracle GoldenGate 19c を使用した 簡単データベース移行ガイド_v1.0Oracle GoldenGate 19c を使用した 簡単データベース移行ガイド_v1.0
Oracle GoldenGate 19c を使用した 簡単データベース移行ガイド_v1.0
 
Oracle Cloud Platform:IDCSを使ったアイデンティティ・ドメイン管理者ガイド
Oracle Cloud Platform:IDCSを使ったアイデンティティ・ドメイン管理者ガイドOracle Cloud Platform:IDCSを使ったアイデンティティ・ドメイン管理者ガイド
Oracle Cloud Platform:IDCSを使ったアイデンティティ・ドメイン管理者ガイド
 
Oracle GoldenGate入門
Oracle GoldenGate入門Oracle GoldenGate入門
Oracle GoldenGate入門
 
Oracle Data Masking and Subsettingのご紹介
Oracle Data Masking and Subsettingのご紹介Oracle Data Masking and Subsettingのご紹介
Oracle Data Masking and Subsettingのご紹介
 
Oracle Database Applianceのご紹介(詳細)
Oracle Database Applianceのご紹介(詳細)Oracle Database Applianceのご紹介(詳細)
Oracle Database Applianceのご紹介(詳細)
 
Oracle GoldenGate FAQ
Oracle GoldenGate FAQOracle GoldenGate FAQ
Oracle GoldenGate FAQ
 
OCI GoldenGate Overview 2021年4月版
OCI GoldenGate Overview 2021年4月版OCI GoldenGate Overview 2021年4月版
OCI GoldenGate Overview 2021年4月版
 
GoldenGateテクニカルセミナー2「Oracle GoldenGate 新機能情報」(2016/5/11)
GoldenGateテクニカルセミナー2「Oracle GoldenGate 新機能情報」(2016/5/11)GoldenGateテクニカルセミナー2「Oracle GoldenGate 新機能情報」(2016/5/11)
GoldenGateテクニカルセミナー2「Oracle GoldenGate 新機能情報」(2016/5/11)
 
オンプレミスからクラウドへ:Oracle Databaseの移行ベストプラクティスを解説 (Oracle Cloudウェビナーシリーズ: 2021年2月18日)
オンプレミスからクラウドへ:Oracle Databaseの移行ベストプラクティスを解説 (Oracle Cloudウェビナーシリーズ: 2021年2月18日)オンプレミスからクラウドへ:Oracle Databaseの移行ベストプラクティスを解説 (Oracle Cloudウェビナーシリーズ: 2021年2月18日)
オンプレミスからクラウドへ:Oracle Databaseの移行ベストプラクティスを解説 (Oracle Cloudウェビナーシリーズ: 2021年2月18日)
 
Oracle Cloud Infrastructure:2022年4月度サービス・アップデート
Oracle Cloud Infrastructure:2022年4月度サービス・アップデートOracle Cloud Infrastructure:2022年4月度サービス・アップデート
Oracle Cloud Infrastructure:2022年4月度サービス・アップデート
 
Oracle cloud infrastructure shared file service comparison 20181019 ss
Oracle cloud infrastructure shared file service comparison 20181019 ssOracle cloud infrastructure shared file service comparison 20181019 ss
Oracle cloud infrastructure shared file service comparison 20181019 ss
 
[dbts-2014-tokyo] 目指せExadata!! Oracle DB高速化を目指した構成
[dbts-2014-tokyo] 目指せExadata!! Oracle DB高速化を目指した構成[dbts-2014-tokyo] 目指せExadata!! Oracle DB高速化を目指した構成
[dbts-2014-tokyo] 目指せExadata!! Oracle DB高速化を目指した構成
 
Oracle Analytics Cloud のご紹介【2021年3月版】
Oracle Analytics Cloud のご紹介【2021年3月版】Oracle Analytics Cloud のご紹介【2021年3月版】
Oracle Analytics Cloud のご紹介【2021年3月版】
 

Semelhante a [非公開]Oracle Cloud Infrastructure Classic ネットワーク機能詳細

Swiss IPv6 Council: The Cisco-Journey to an IPv6-only Building
Swiss IPv6 Council: The Cisco-Journey to an IPv6-only BuildingSwiss IPv6 Council: The Cisco-Journey to an IPv6-only Building
Swiss IPv6 Council: The Cisco-Journey to an IPv6-only BuildingDigicomp Academy AG
 
Oracle E-Business Suite On Oracle Cloud
Oracle E-Business Suite On Oracle CloudOracle E-Business Suite On Oracle Cloud
Oracle E-Business Suite On Oracle Cloudpasalapudi
 
Oracle Cloud Infraestructure Update
Oracle Cloud Infraestructure UpdateOracle Cloud Infraestructure Update
Oracle Cloud Infraestructure UpdateRaphaelCampelo
 
Elastic Cloud Enterprise @ Cisco
Elastic Cloud Enterprise @ CiscoElastic Cloud Enterprise @ Cisco
Elastic Cloud Enterprise @ CiscoElasticsearch
 
Cisco's Open Device Programmability Strategy: Open Discussion
Cisco's Open Device Programmability Strategy: Open DiscussionCisco's Open Device Programmability Strategy: Open Discussion
Cisco's Open Device Programmability Strategy: Open DiscussionCisco DevNet
 
Triangle Kubernetes Meetup: Container cloud networking - Contiv for K8S & Ope...
Triangle Kubernetes Meetup: Container cloud networking - Contiv for K8S & Ope...Triangle Kubernetes Meetup: Container cloud networking - Contiv for K8S & Ope...
Triangle Kubernetes Meetup: Container cloud networking - Contiv for K8S & Ope...Sanjeev Rampal
 
Oracle meetup kubernetes_171118
Oracle meetup kubernetes_171118Oracle meetup kubernetes_171118
Oracle meetup kubernetes_171118Oracle Korea
 
OpenJDK: How to Join In on All the Fun [JavaOne 2017 CON3667]
OpenJDK: How to Join In on All the Fun [JavaOne 2017 CON3667]OpenJDK: How to Join In on All the Fun [JavaOne 2017 CON3667]
OpenJDK: How to Join In on All the Fun [JavaOne 2017 CON3667]David Buck
 
20171104 hk-py con-mysql-documentstore_v1
20171104 hk-py con-mysql-documentstore_v120171104 hk-py con-mysql-documentstore_v1
20171104 hk-py con-mysql-documentstore_v1Ivan Ma
 
Running SOA in the Cloud: SOA CS for SOA Suite Customers
Running SOA in the Cloud: SOA CS for SOA Suite CustomersRunning SOA in the Cloud: SOA CS for SOA Suite Customers
Running SOA in the Cloud: SOA CS for SOA Suite CustomersSimon Haslam
 
【旧版】Oracle Database Cloud Service:サービス概要のご紹介 [2020年8月版]
【旧版】Oracle Database Cloud Service:サービス概要のご紹介 [2020年8月版]【旧版】Oracle Database Cloud Service:サービス概要のご紹介 [2020年8月版]
【旧版】Oracle Database Cloud Service:サービス概要のご紹介 [2020年8月版]オラクルエンジニア通信
 
What's New MySQL 8.0?
What's New MySQL 8.0?What's New MySQL 8.0?
What's New MySQL 8.0?OracleMySQL
 
Oracle Cloud Infrastructure:2020年8月度サービス・アップデート
Oracle Cloud Infrastructure:2020年8月度サービス・アップデートOracle Cloud Infrastructure:2020年8月度サービス・アップデート
Oracle Cloud Infrastructure:2020年8月度サービス・アップデートオラクルエンジニア通信
 
Steeltoe Meetup Toronto 4-18-2017
Steeltoe Meetup Toronto 4-18-2017Steeltoe Meetup Toronto 4-18-2017
Steeltoe Meetup Toronto 4-18-2017Zach Brown
 
IPv6 on the Cisco Campus
IPv6 on the Cisco CampusIPv6 on the Cisco Campus
IPv6 on the Cisco CampusAPNIC
 
IPv6IntegrationBestPracticesfinal.pdf
IPv6IntegrationBestPracticesfinal.pdfIPv6IntegrationBestPracticesfinal.pdf
IPv6IntegrationBestPracticesfinal.pdfCPUHogg
 

Semelhante a [非公開]Oracle Cloud Infrastructure Classic ネットワーク機能詳細 (20)

Swiss IPv6 Council: The Cisco-Journey to an IPv6-only Building
Swiss IPv6 Council: The Cisco-Journey to an IPv6-only BuildingSwiss IPv6 Council: The Cisco-Journey to an IPv6-only Building
Swiss IPv6 Council: The Cisco-Journey to an IPv6-only Building
 
Oracle E-Business Suite On Oracle Cloud
Oracle E-Business Suite On Oracle CloudOracle E-Business Suite On Oracle Cloud
Oracle E-Business Suite On Oracle Cloud
 
Oci meetup v1
Oci meetup v1Oci meetup v1
Oci meetup v1
 
Oracle Cloud Infraestructure Update
Oracle Cloud Infraestructure UpdateOracle Cloud Infraestructure Update
Oracle Cloud Infraestructure Update
 
Elastic Cloud Enterprise @ Cisco
Elastic Cloud Enterprise @ CiscoElastic Cloud Enterprise @ Cisco
Elastic Cloud Enterprise @ Cisco
 
Cisco's Open Device Programmability Strategy: Open Discussion
Cisco's Open Device Programmability Strategy: Open DiscussionCisco's Open Device Programmability Strategy: Open Discussion
Cisco's Open Device Programmability Strategy: Open Discussion
 
Triangle Kubernetes Meetup: Container cloud networking - Contiv for K8S & Ope...
Triangle Kubernetes Meetup: Container cloud networking - Contiv for K8S & Ope...Triangle Kubernetes Meetup: Container cloud networking - Contiv for K8S & Ope...
Triangle Kubernetes Meetup: Container cloud networking - Contiv for K8S & Ope...
 
Kubernetes 101
Kubernetes 101Kubernetes 101
Kubernetes 101
 
Oracle meetup kubernetes_171118
Oracle meetup kubernetes_171118Oracle meetup kubernetes_171118
Oracle meetup kubernetes_171118
 
OpenJDK: How to Join In on All the Fun [JavaOne 2017 CON3667]
OpenJDK: How to Join In on All the Fun [JavaOne 2017 CON3667]OpenJDK: How to Join In on All the Fun [JavaOne 2017 CON3667]
OpenJDK: How to Join In on All the Fun [JavaOne 2017 CON3667]
 
20171104 hk-py con-mysql-documentstore_v1
20171104 hk-py con-mysql-documentstore_v120171104 hk-py con-mysql-documentstore_v1
20171104 hk-py con-mysql-documentstore_v1
 
Cisco DCACI
Cisco DCACICisco DCACI
Cisco DCACI
 
Running SOA in the Cloud: SOA CS for SOA Suite Customers
Running SOA in the Cloud: SOA CS for SOA Suite CustomersRunning SOA in the Cloud: SOA CS for SOA Suite Customers
Running SOA in the Cloud: SOA CS for SOA Suite Customers
 
【旧版】Oracle Database Cloud Service:サービス概要のご紹介 [2020年8月版]
【旧版】Oracle Database Cloud Service:サービス概要のご紹介 [2020年8月版]【旧版】Oracle Database Cloud Service:サービス概要のご紹介 [2020年8月版]
【旧版】Oracle Database Cloud Service:サービス概要のご紹介 [2020年8月版]
 
SDN and metrics from the SDOs
SDN and metrics from the SDOsSDN and metrics from the SDOs
SDN and metrics from the SDOs
 
What's New MySQL 8.0?
What's New MySQL 8.0?What's New MySQL 8.0?
What's New MySQL 8.0?
 
Oracle Cloud Infrastructure:2020年8月度サービス・アップデート
Oracle Cloud Infrastructure:2020年8月度サービス・アップデートOracle Cloud Infrastructure:2020年8月度サービス・アップデート
Oracle Cloud Infrastructure:2020年8月度サービス・アップデート
 
Steeltoe Meetup Toronto 4-18-2017
Steeltoe Meetup Toronto 4-18-2017Steeltoe Meetup Toronto 4-18-2017
Steeltoe Meetup Toronto 4-18-2017
 
IPv6 on the Cisco Campus
IPv6 on the Cisco CampusIPv6 on the Cisco Campus
IPv6 on the Cisco Campus
 
IPv6IntegrationBestPracticesfinal.pdf
IPv6IntegrationBestPracticesfinal.pdfIPv6IntegrationBestPracticesfinal.pdf
IPv6IntegrationBestPracticesfinal.pdf
 

Mais de オラクルエンジニア通信

Oracle Cloud Infrastructure:2023年5月度サービス・アップデート
Oracle Cloud Infrastructure:2023年5月度サービス・アップデートOracle Cloud Infrastructure:2023年5月度サービス・アップデート
Oracle Cloud Infrastructure:2023年5月度サービス・アップデートオラクルエンジニア通信
 
Oracle Cloud Infrastructure:2023年4月度サービス・アップデート
Oracle Cloud Infrastructure:2023年4月度サービス・アップデートOracle Cloud Infrastructure:2023年4月度サービス・アップデート
Oracle Cloud Infrastructure:2023年4月度サービス・アップデートオラクルエンジニア通信
 
Oracle Cloud Infrastructure:2023年3月度サービス・アップデート
Oracle Cloud Infrastructure:2023年3月度サービス・アップデートOracle Cloud Infrastructure:2023年3月度サービス・アップデート
Oracle Cloud Infrastructure:2023年3月度サービス・アップデートオラクルエンジニア通信
 
Oracle Cloud Infrastructure:2023年2月度サービス・アップデート
Oracle Cloud Infrastructure:2023年2月度サービス・アップデートOracle Cloud Infrastructure:2023年2月度サービス・アップデート
Oracle Cloud Infrastructure:2023年2月度サービス・アップデートオラクルエンジニア通信
 
Oracle Cloud Infrastructure:2023年1月度サービス・アップデート
Oracle Cloud Infrastructure:2023年1月度サービス・アップデートOracle Cloud Infrastructure:2023年1月度サービス・アップデート
Oracle Cloud Infrastructure:2023年1月度サービス・アップデートオラクルエンジニア通信
 
Oracle Cloud Infrastructure:2022年12月度サービス・アップデート
Oracle Cloud Infrastructure:2022年12月度サービス・アップデートOracle Cloud Infrastructure:2022年12月度サービス・アップデート
Oracle Cloud Infrastructure:2022年12月度サービス・アップデートオラクルエンジニア通信
 
Oracle Cloud Infrastructure:2022年11月度サービス・アップデート
Oracle Cloud Infrastructure:2022年11月度サービス・アップデートOracle Cloud Infrastructure:2022年11月度サービス・アップデート
Oracle Cloud Infrastructure:2022年11月度サービス・アップデートオラクルエンジニア通信
 
Oracle Cloud Infrastructure:2022年10月度サービス・アップデート
Oracle Cloud Infrastructure:2022年10月度サービス・アップデートOracle Cloud Infrastructure:2022年10月度サービス・アップデート
Oracle Cloud Infrastructure:2022年10月度サービス・アップデートオラクルエンジニア通信
 
Oracle Cloud Infrastructure:2022年9月度サービス・アップデート
Oracle Cloud Infrastructure:2022年9月度サービス・アップデートOracle Cloud Infrastructure:2022年9月度サービス・アップデート
Oracle Cloud Infrastructure:2022年9月度サービス・アップデートオラクルエンジニア通信
 
Oracle Cloud Infrastructure:2022年7月度サービス・アップデート
Oracle Cloud Infrastructure:2022年7月度サービス・アップデートOracle Cloud Infrastructure:2022年7月度サービス・アップデート
Oracle Cloud Infrastructure:2022年7月度サービス・アップデートオラクルエンジニア通信
 
Oracle Cloud Infrastructure:2022年6月度サービス・アップデート
Oracle Cloud Infrastructure:2022年6月度サービス・アップデートOracle Cloud Infrastructure:2022年6月度サービス・アップデート
Oracle Cloud Infrastructure:2022年6月度サービス・アップデートオラクルエンジニア通信
 
Oracle Cloud Infrastructure:2022年5月度サービス・アップデート
Oracle Cloud Infrastructure:2022年5月度サービス・アップデートOracle Cloud Infrastructure:2022年5月度サービス・アップデート
Oracle Cloud Infrastructure:2022年5月度サービス・アップデートオラクルエンジニア通信
 
Oracle Cloud Infrastructure データベース・クラウド:各バージョンのサポート期間 (2022年4月版)
Oracle Cloud Infrastructureデータベース・クラウド:各バージョンのサポート期間 (2022年4月版)Oracle Cloud Infrastructureデータベース・クラウド:各バージョンのサポート期間 (2022年4月版)
Oracle Cloud Infrastructure データベース・クラウド:各バージョンのサポート期間 (2022年4月版)オラクルエンジニア通信
 
MySQL Technology Cafe #14 MySQL Shellを使ってもっと楽をしようの会
MySQL Technology Cafe #14 MySQL Shellを使ってもっと楽をしようの会MySQL Technology Cafe #14 MySQL Shellを使ってもっと楽をしようの会
MySQL Technology Cafe #14 MySQL Shellを使ってもっと楽をしようの会オラクルエンジニア通信
 
Oracle Cloud Infrastructure:2022年3月度サービス・アップデート
Oracle Cloud Infrastructure:2022年3月度サービス・アップデートOracle Cloud Infrastructure:2022年3月度サービス・アップデート
Oracle Cloud Infrastructure:2022年3月度サービス・アップデートオラクルエンジニア通信
 
Oracle Cloud Infrastructure:2022年2月度サービス・アップデート
Oracle Cloud Infrastructure:2022年2月度サービス・アップデートOracle Cloud Infrastructure:2022年2月度サービス・アップデート
Oracle Cloud Infrastructure:2022年2月度サービス・アップデートオラクルエンジニア通信
 
Oracle Cloud Infrastructure:2022年1月度サービス・アップデート
Oracle Cloud Infrastructure:2022年1月度サービス・アップデートOracle Cloud Infrastructure:2022年1月度サービス・アップデート
Oracle Cloud Infrastructure:2022年1月度サービス・アップデートオラクルエンジニア通信
 
Oracle Databaseはクラウドに移行するべきか否か 全10ケースをご紹介 (Oracle Cloudウェビナーシリーズ: 2021年11月30日)
Oracle Databaseはクラウドに移行するべきか否か 全10ケースをご紹介 (Oracle Cloudウェビナーシリーズ: 2021年11月30日)Oracle Databaseはクラウドに移行するべきか否か 全10ケースをご紹介 (Oracle Cloudウェビナーシリーズ: 2021年11月30日)
Oracle Databaseはクラウドに移行するべきか否か 全10ケースをご紹介 (Oracle Cloudウェビナーシリーズ: 2021年11月30日)オラクルエンジニア通信
 
【旧版】Oracle Gen 2 Exadata Cloud@Customer:サービス概要のご紹介 [2021年12月版]
【旧版】Oracle Gen 2 Exadata Cloud@Customer:サービス概要のご紹介 [2021年12月版]【旧版】Oracle Gen 2 Exadata Cloud@Customer:サービス概要のご紹介 [2021年12月版]
【旧版】Oracle Gen 2 Exadata Cloud@Customer:サービス概要のご紹介 [2021年12月版]オラクルエンジニア通信
 
あなたのクラウドは大丈夫?NRI実務者が教えるセキュリティの傾向と対策 (Oracle Cloudウェビナーシリーズ: 2021年11月24日)
あなたのクラウドは大丈夫?NRI実務者が教えるセキュリティの傾向と対策 (Oracle Cloudウェビナーシリーズ: 2021年11月24日)あなたのクラウドは大丈夫?NRI実務者が教えるセキュリティの傾向と対策 (Oracle Cloudウェビナーシリーズ: 2021年11月24日)
あなたのクラウドは大丈夫?NRI実務者が教えるセキュリティの傾向と対策 (Oracle Cloudウェビナーシリーズ: 2021年11月24日)オラクルエンジニア通信
 

Mais de オラクルエンジニア通信 (20)

Oracle Cloud Infrastructure:2023年5月度サービス・アップデート
Oracle Cloud Infrastructure:2023年5月度サービス・アップデートOracle Cloud Infrastructure:2023年5月度サービス・アップデート
Oracle Cloud Infrastructure:2023年5月度サービス・アップデート
 
Oracle Cloud Infrastructure:2023年4月度サービス・アップデート
Oracle Cloud Infrastructure:2023年4月度サービス・アップデートOracle Cloud Infrastructure:2023年4月度サービス・アップデート
Oracle Cloud Infrastructure:2023年4月度サービス・アップデート
 
Oracle Cloud Infrastructure:2023年3月度サービス・アップデート
Oracle Cloud Infrastructure:2023年3月度サービス・アップデートOracle Cloud Infrastructure:2023年3月度サービス・アップデート
Oracle Cloud Infrastructure:2023年3月度サービス・アップデート
 
Oracle Cloud Infrastructure:2023年2月度サービス・アップデート
Oracle Cloud Infrastructure:2023年2月度サービス・アップデートOracle Cloud Infrastructure:2023年2月度サービス・アップデート
Oracle Cloud Infrastructure:2023年2月度サービス・アップデート
 
Oracle Cloud Infrastructure:2023年1月度サービス・アップデート
Oracle Cloud Infrastructure:2023年1月度サービス・アップデートOracle Cloud Infrastructure:2023年1月度サービス・アップデート
Oracle Cloud Infrastructure:2023年1月度サービス・アップデート
 
Oracle Cloud Infrastructure:2022年12月度サービス・アップデート
Oracle Cloud Infrastructure:2022年12月度サービス・アップデートOracle Cloud Infrastructure:2022年12月度サービス・アップデート
Oracle Cloud Infrastructure:2022年12月度サービス・アップデート
 
Oracle Cloud Infrastructure:2022年11月度サービス・アップデート
Oracle Cloud Infrastructure:2022年11月度サービス・アップデートOracle Cloud Infrastructure:2022年11月度サービス・アップデート
Oracle Cloud Infrastructure:2022年11月度サービス・アップデート
 
Oracle Cloud Infrastructure:2022年10月度サービス・アップデート
Oracle Cloud Infrastructure:2022年10月度サービス・アップデートOracle Cloud Infrastructure:2022年10月度サービス・アップデート
Oracle Cloud Infrastructure:2022年10月度サービス・アップデート
 
Oracle Cloud Infrastructure:2022年9月度サービス・アップデート
Oracle Cloud Infrastructure:2022年9月度サービス・アップデートOracle Cloud Infrastructure:2022年9月度サービス・アップデート
Oracle Cloud Infrastructure:2022年9月度サービス・アップデート
 
Oracle Cloud Infrastructure:2022年7月度サービス・アップデート
Oracle Cloud Infrastructure:2022年7月度サービス・アップデートOracle Cloud Infrastructure:2022年7月度サービス・アップデート
Oracle Cloud Infrastructure:2022年7月度サービス・アップデート
 
Oracle Cloud Infrastructure:2022年6月度サービス・アップデート
Oracle Cloud Infrastructure:2022年6月度サービス・アップデートOracle Cloud Infrastructure:2022年6月度サービス・アップデート
Oracle Cloud Infrastructure:2022年6月度サービス・アップデート
 
Oracle Cloud Infrastructure:2022年5月度サービス・アップデート
Oracle Cloud Infrastructure:2022年5月度サービス・アップデートOracle Cloud Infrastructure:2022年5月度サービス・アップデート
Oracle Cloud Infrastructure:2022年5月度サービス・アップデート
 
Oracle Cloud Infrastructure データベース・クラウド:各バージョンのサポート期間 (2022年4月版)
Oracle Cloud Infrastructureデータベース・クラウド:各バージョンのサポート期間 (2022年4月版)Oracle Cloud Infrastructureデータベース・クラウド:各バージョンのサポート期間 (2022年4月版)
Oracle Cloud Infrastructure データベース・クラウド:各バージョンのサポート期間 (2022年4月版)
 
MySQL Technology Cafe #14 MySQL Shellを使ってもっと楽をしようの会
MySQL Technology Cafe #14 MySQL Shellを使ってもっと楽をしようの会MySQL Technology Cafe #14 MySQL Shellを使ってもっと楽をしようの会
MySQL Technology Cafe #14 MySQL Shellを使ってもっと楽をしようの会
 
Oracle Cloud Infrastructure:2022年3月度サービス・アップデート
Oracle Cloud Infrastructure:2022年3月度サービス・アップデートOracle Cloud Infrastructure:2022年3月度サービス・アップデート
Oracle Cloud Infrastructure:2022年3月度サービス・アップデート
 
Oracle Cloud Infrastructure:2022年2月度サービス・アップデート
Oracle Cloud Infrastructure:2022年2月度サービス・アップデートOracle Cloud Infrastructure:2022年2月度サービス・アップデート
Oracle Cloud Infrastructure:2022年2月度サービス・アップデート
 
Oracle Cloud Infrastructure:2022年1月度サービス・アップデート
Oracle Cloud Infrastructure:2022年1月度サービス・アップデートOracle Cloud Infrastructure:2022年1月度サービス・アップデート
Oracle Cloud Infrastructure:2022年1月度サービス・アップデート
 
Oracle Databaseはクラウドに移行するべきか否か 全10ケースをご紹介 (Oracle Cloudウェビナーシリーズ: 2021年11月30日)
Oracle Databaseはクラウドに移行するべきか否か 全10ケースをご紹介 (Oracle Cloudウェビナーシリーズ: 2021年11月30日)Oracle Databaseはクラウドに移行するべきか否か 全10ケースをご紹介 (Oracle Cloudウェビナーシリーズ: 2021年11月30日)
Oracle Databaseはクラウドに移行するべきか否か 全10ケースをご紹介 (Oracle Cloudウェビナーシリーズ: 2021年11月30日)
 
【旧版】Oracle Gen 2 Exadata Cloud@Customer:サービス概要のご紹介 [2021年12月版]
【旧版】Oracle Gen 2 Exadata Cloud@Customer:サービス概要のご紹介 [2021年12月版]【旧版】Oracle Gen 2 Exadata Cloud@Customer:サービス概要のご紹介 [2021年12月版]
【旧版】Oracle Gen 2 Exadata Cloud@Customer:サービス概要のご紹介 [2021年12月版]
 
あなたのクラウドは大丈夫?NRI実務者が教えるセキュリティの傾向と対策 (Oracle Cloudウェビナーシリーズ: 2021年11月24日)
あなたのクラウドは大丈夫?NRI実務者が教えるセキュリティの傾向と対策 (Oracle Cloudウェビナーシリーズ: 2021年11月24日)あなたのクラウドは大丈夫?NRI実務者が教えるセキュリティの傾向と対策 (Oracle Cloudウェビナーシリーズ: 2021年11月24日)
あなたのクラウドは大丈夫?NRI実務者が教えるセキュリティの傾向と対策 (Oracle Cloudウェビナーシリーズ: 2021年11月24日)
 

Último

Best VIP Call Girls Noida Sector 39 Call Me: 8448380779
Best VIP Call Girls Noida Sector 39 Call Me: 8448380779Best VIP Call Girls Noida Sector 39 Call Me: 8448380779
Best VIP Call Girls Noida Sector 39 Call Me: 8448380779Delhi Call girls
 
April 2024 - Crypto Market Report's Analysis
April 2024 - Crypto Market Report's AnalysisApril 2024 - Crypto Market Report's Analysis
April 2024 - Crypto Market Report's Analysismanisha194592
 
Schema on read is obsolete. Welcome metaprogramming..pdf
Schema on read is obsolete. Welcome metaprogramming..pdfSchema on read is obsolete. Welcome metaprogramming..pdf
Schema on read is obsolete. Welcome metaprogramming..pdfLars Albertsson
 
Market Analysis in the 5 Largest Economic Countries in Southeast Asia.pdf
Market Analysis in the 5 Largest Economic Countries in Southeast Asia.pdfMarket Analysis in the 5 Largest Economic Countries in Southeast Asia.pdf
Market Analysis in the 5 Largest Economic Countries in Southeast Asia.pdfRachmat Ramadhan H
 
Introduction-to-Machine-Learning (1).pptx
Introduction-to-Machine-Learning (1).pptxIntroduction-to-Machine-Learning (1).pptx
Introduction-to-Machine-Learning (1).pptxfirstjob4
 
FESE Capital Markets Fact Sheet 2024 Q1.pdf
FESE Capital Markets Fact Sheet 2024 Q1.pdfFESE Capital Markets Fact Sheet 2024 Q1.pdf
FESE Capital Markets Fact Sheet 2024 Q1.pdfMarinCaroMartnezBerg
 
Discover Why Less is More in B2B Research
Discover Why Less is More in B2B ResearchDiscover Why Less is More in B2B Research
Discover Why Less is More in B2B Researchmichael115558
 
Digital Advertising Lecture for Advanced Digital & Social Media Strategy at U...
Digital Advertising Lecture for Advanced Digital & Social Media Strategy at U...Digital Advertising Lecture for Advanced Digital & Social Media Strategy at U...
Digital Advertising Lecture for Advanced Digital & Social Media Strategy at U...Valters Lauzums
 
Data-Analysis for Chicago Crime Data 2023
Data-Analysis for Chicago Crime Data  2023Data-Analysis for Chicago Crime Data  2023
Data-Analysis for Chicago Crime Data 2023ymrp368
 
Vip Model Call Girls (Delhi) Karol Bagh 9711199171✔️Body to body massage wit...
Vip Model  Call Girls (Delhi) Karol Bagh 9711199171✔️Body to body massage wit...Vip Model  Call Girls (Delhi) Karol Bagh 9711199171✔️Body to body massage wit...
Vip Model Call Girls (Delhi) Karol Bagh 9711199171✔️Body to body massage wit...shivangimorya083
 
Determinants of health, dimensions of health, positive health and spectrum of...
Determinants of health, dimensions of health, positive health and spectrum of...Determinants of health, dimensions of health, positive health and spectrum of...
Determinants of health, dimensions of health, positive health and spectrum of...shambhavirathore45
 
Midocean dropshipping via API with DroFx
Midocean dropshipping via API with DroFxMidocean dropshipping via API with DroFx
Midocean dropshipping via API with DroFxolyaivanovalion
 
Ravak dropshipping via API with DroFx.pptx
Ravak dropshipping via API with DroFx.pptxRavak dropshipping via API with DroFx.pptx
Ravak dropshipping via API with DroFx.pptxolyaivanovalion
 
Mature dropshipping via API with DroFx.pptx
Mature dropshipping via API with DroFx.pptxMature dropshipping via API with DroFx.pptx
Mature dropshipping via API with DroFx.pptxolyaivanovalion
 
CebaBaby dropshipping via API with DroFX.pptx
CebaBaby dropshipping via API with DroFX.pptxCebaBaby dropshipping via API with DroFX.pptx
CebaBaby dropshipping via API with DroFX.pptxolyaivanovalion
 
100-Concepts-of-AI by Anupama Kate .pptx
100-Concepts-of-AI by Anupama Kate .pptx100-Concepts-of-AI by Anupama Kate .pptx
100-Concepts-of-AI by Anupama Kate .pptxAnupama Kate
 
Generative AI on Enterprise Cloud with NiFi and Milvus
Generative AI on Enterprise Cloud with NiFi and MilvusGenerative AI on Enterprise Cloud with NiFi and Milvus
Generative AI on Enterprise Cloud with NiFi and MilvusTimothy Spann
 

Último (20)

Best VIP Call Girls Noida Sector 39 Call Me: 8448380779
Best VIP Call Girls Noida Sector 39 Call Me: 8448380779Best VIP Call Girls Noida Sector 39 Call Me: 8448380779
Best VIP Call Girls Noida Sector 39 Call Me: 8448380779
 
April 2024 - Crypto Market Report's Analysis
April 2024 - Crypto Market Report's AnalysisApril 2024 - Crypto Market Report's Analysis
April 2024 - Crypto Market Report's Analysis
 
Schema on read is obsolete. Welcome metaprogramming..pdf
Schema on read is obsolete. Welcome metaprogramming..pdfSchema on read is obsolete. Welcome metaprogramming..pdf
Schema on read is obsolete. Welcome metaprogramming..pdf
 
Market Analysis in the 5 Largest Economic Countries in Southeast Asia.pdf
Market Analysis in the 5 Largest Economic Countries in Southeast Asia.pdfMarket Analysis in the 5 Largest Economic Countries in Southeast Asia.pdf
Market Analysis in the 5 Largest Economic Countries in Southeast Asia.pdf
 
Introduction-to-Machine-Learning (1).pptx
Introduction-to-Machine-Learning (1).pptxIntroduction-to-Machine-Learning (1).pptx
Introduction-to-Machine-Learning (1).pptx
 
FESE Capital Markets Fact Sheet 2024 Q1.pdf
FESE Capital Markets Fact Sheet 2024 Q1.pdfFESE Capital Markets Fact Sheet 2024 Q1.pdf
FESE Capital Markets Fact Sheet 2024 Q1.pdf
 
Discover Why Less is More in B2B Research
Discover Why Less is More in B2B ResearchDiscover Why Less is More in B2B Research
Discover Why Less is More in B2B Research
 
(NEHA) Call Girls Katra Call Now 8617697112 Katra Escorts 24x7
(NEHA) Call Girls Katra Call Now 8617697112 Katra Escorts 24x7(NEHA) Call Girls Katra Call Now 8617697112 Katra Escorts 24x7
(NEHA) Call Girls Katra Call Now 8617697112 Katra Escorts 24x7
 
Digital Advertising Lecture for Advanced Digital & Social Media Strategy at U...
Digital Advertising Lecture for Advanced Digital & Social Media Strategy at U...Digital Advertising Lecture for Advanced Digital & Social Media Strategy at U...
Digital Advertising Lecture for Advanced Digital & Social Media Strategy at U...
 
Data-Analysis for Chicago Crime Data 2023
Data-Analysis for Chicago Crime Data  2023Data-Analysis for Chicago Crime Data  2023
Data-Analysis for Chicago Crime Data 2023
 
Vip Model Call Girls (Delhi) Karol Bagh 9711199171✔️Body to body massage wit...
Vip Model  Call Girls (Delhi) Karol Bagh 9711199171✔️Body to body massage wit...Vip Model  Call Girls (Delhi) Karol Bagh 9711199171✔️Body to body massage wit...
Vip Model Call Girls (Delhi) Karol Bagh 9711199171✔️Body to body massage wit...
 
Determinants of health, dimensions of health, positive health and spectrum of...
Determinants of health, dimensions of health, positive health and spectrum of...Determinants of health, dimensions of health, positive health and spectrum of...
Determinants of health, dimensions of health, positive health and spectrum of...
 
Abortion pills in Doha Qatar (+966572737505 ! Get Cytotec
Abortion pills in Doha Qatar (+966572737505 ! Get CytotecAbortion pills in Doha Qatar (+966572737505 ! Get Cytotec
Abortion pills in Doha Qatar (+966572737505 ! Get Cytotec
 
Midocean dropshipping via API with DroFx
Midocean dropshipping via API with DroFxMidocean dropshipping via API with DroFx
Midocean dropshipping via API with DroFx
 
Ravak dropshipping via API with DroFx.pptx
Ravak dropshipping via API with DroFx.pptxRavak dropshipping via API with DroFx.pptx
Ravak dropshipping via API with DroFx.pptx
 
Mature dropshipping via API with DroFx.pptx
Mature dropshipping via API with DroFx.pptxMature dropshipping via API with DroFx.pptx
Mature dropshipping via API with DroFx.pptx
 
Sampling (random) method and Non random.ppt
Sampling (random) method and Non random.pptSampling (random) method and Non random.ppt
Sampling (random) method and Non random.ppt
 
CebaBaby dropshipping via API with DroFX.pptx
CebaBaby dropshipping via API with DroFX.pptxCebaBaby dropshipping via API with DroFX.pptx
CebaBaby dropshipping via API with DroFX.pptx
 
100-Concepts-of-AI by Anupama Kate .pptx
100-Concepts-of-AI by Anupama Kate .pptx100-Concepts-of-AI by Anupama Kate .pptx
100-Concepts-of-AI by Anupama Kate .pptx
 
Generative AI on Enterprise Cloud with NiFi and Milvus
Generative AI on Enterprise Cloud with NiFi and MilvusGenerative AI on Enterprise Cloud with NiFi and Milvus
Generative AI on Enterprise Cloud with NiFi and Milvus
 

[非公開]Oracle Cloud Infrastructure Classic ネットワーク機能詳細

  • 1. Copyright © 2016, Oracle and/or its affiliates. All rights reserved. | Oracle Cloud Infrastructure OCI Classic v2.7 2017 12
  • 2. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | Safe Harbor Statement 3
  • 3. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | • Oracle Cloud Infrastructure (OCI) • 2017 9 Bare Metal Cloud Service (BMC) Oracle Cloud Infrastructure (OCI) Oracle Public Cloud (OPC) Oracle Cloud Infrastructure Classic (OCI Classic) • OCI Classic OCI Classic PaaS Oracle Cloud Infrastructure( Bare Metal Cloud) Oracle Ravello – • Oracle Cloud (http://cloud.oracle.com) 4 • Oracle Cloud Infrastructure Compute Classic • Oracle Database Cloud Service (on OCI Classic) • Oracle Java Cloud Service (on OCI Classic) • OCI SOA Cloud Service (on OCI Classic)
  • 4. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | OCI Classic 5
  • 5. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 7 OCI Classic SDN (IP )
  • 6. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | • Oracle Cloud 1 • Oracle IP IP • 30bit L3 • PaaS 8 Oracle Cloud Instance1 eth0 Instance2 Instance3 Instance4 eth0 eth0 eth0 : 10.168.0.0/16 Instance5 eth0 Internet / FastConnect .22/30 .42/30 Identity Domain 1 Identity Domain 2 .50/30 .134/30 .6/30 NAT 129.152.148.131 ( IP) 129.152.148.130 ( IP)
  • 7. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | • 2016 10 ( ) • – • IP NIC IP 10 Instance1 eth0 eth1 IP : 192.168.3.0/24 IP : 192.168.2.0/24 IP : 192.168.2.0/24 Instance2 Instance3 Instance4 eth1 eth2 eth1 eth2 eth0 eth1 : 10.32.1.0/24 Instance5 eth1 eth1 internet .21 .42.2 .3 Identity Domain 1 Identity Domain 2 .4.2 .3 .2 .3 129.152.148.130 ( IP) 129.152.148.131 ( IP) IP NAT
  • 8. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | IP … 1. 2. IP 3. ( NIC) 4. VPN (Corente Cloud Gateway) WAN (GRE ) 5. / ( / ) 6. NIC MAC ( MAC ) 11
  • 9. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 12 Web VPN VPN VPN
  • 10. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 13 Oracle Cloud OCI Classic VPN-GW (Corente Services Gateway) VPN-GW VPN Web (Compute Cloud Service) (Java Cloud Service*) (Database Cloud Service*) * (2017 11 ) Java Cloud Service/Database Cloud Service IP
  • 11. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | OCI Classic 14
  • 12. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | • IP – IP – IP – NIC – NIC – * – * – * – IP * – IP * • – – – – IP – IP • VPN – VPNaaS – Corente** – FastConnect 15 OCI Classic * (2017 11 ) * ( ) ** Corente 2017 10 (17.4.2)
  • 13. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | IP – IP 16 IP 1 192.168.1.0/24 IP 2 192.168.2.0/24 .2 .3 .2 .3 IP (IPNetworks) • • 16bit ( : 10.0.0.0 – 10.0.255.255) • IP • ( ) • 1 ( DHCP DNS ) • •
  • 14. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | IP – IP 17 IP 1 192.168.1.0/24 IP 2 192.168.2.0/24 IP .2 .3 .2 .3 IP (IPNetworkExchanges) • IP IP • IP • IP :IP = 1: IP 1 IP • .1 .1
  • 15. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | IP – NIC 18 eth0 : 10.32.1.0/24 .21 eth1 eth2 eth3 eth7 IP : 192.168.1.0/24 192.168.2.0/24 192.168.3.0/24 192.168.7.0/24 .2 .2 .2 .2 NIC (VirtualNICs) • 8 • IP 1 NIC • (= ) • 8 IP • IP IP
  • 16. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | IP – NIC 19 eth0 .2 eth0 .3 IP (192.168.1.0/24) VPN VPN eth0 eth0 eth1 eth1 .8 .9 NIC (VirtualNICSets) • NIC ( OK) • NIC OK • ACL internet 192.168.101.0/24 (Routes) • • IP (CIDR) NIC • IP ECMP LAN
  • 17. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | IP – 20 Instance1 (AP) eth0 IP Instance2 (AP) eth0 • NIC / (ACL) • NIC Instance3 (DB) eth0 NIC (AP) NIC (DB) allow-ping : icmp : : icmp : 1521-egress -to-DB 1521-ingress -from-AP : 1521 : : DB : 1521 : : AP * (2017 11 ) ( )
  • 18. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | IP – IP * 21 Instance1 eth0 IP Instance2 eth0 IP (IPAddressReservations) • IP 1 1NAT IP NIC • IP ( IP) NIC GIP NAT .2 .3 GIP internet NAT * (2017 11 ) ( ) • IP 1 1NAT IP NIC • IP
  • 19. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | IP – DNS 22 web1 eth0 IP (192.168.1.0/24) web2 eth0 DNS • IP 1 IP DNS • IP • ( ) A IP DNS • DNS (IP VPN ) .2 .3 DNS .1 web1.ipnet1.abc.com. IN A 192.168.1.2 web2.ipnet1.abc.com. IN A 192.168.1.3 www.abc.com. IN A 192.168.1.2 www.abc.com. IN A 192.168.1.3
  • 20. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 23 Instance1 eth0 eth1 IP Instance2 eth1 Data Center 1 Instance3 eth0 Data Center 2 WAN internet • • IP PaaS IP • IP Storage Cloud
  • 21. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | – IP 24 Instance1 eth0 eth1 IP Instance2 eth1 internet IP (IPReservations) • IP NAT • IP • Database Cloud Service PaaS 1 IP IP NAT NAT (IPAssociations) • IP ( IP) IP 1 1
  • 22. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | – DNS 25 web1 eth0 web2 eth0 DNS • DNS DHCP • IP • ( ) • (Compute- <domain>.oraclecloud.internal) DNS web1.compute-mydomain.oraclecloud.internal. IN A 10.168.x.y web2.compute-mydomain.oraclecloud.internal. IN A 10.168.x.y
  • 23. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | – 26 AP1 eth0 AP2 eth0 DB eth0 seclist-ap seclist-db : seclist-ap : seclist-db : tcp/1521 : 0.0.0.0/0 : seclist-ap : tcp/443 : ( IP) : seclist-db : tcp/22 IP • Oracle Cloud IP • IPv4 CIDR • • • (from) (to) • IP
  • 24. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | IP 28 1. PaaS(DBCS, JCS ) IP – : XXCOM (USCOM-CENTRAL-1, USCOM-EAST-1, GBCOM- SOUTH-1, AUCOM-EAST-1 ) DC(AP5_Z11) – : AP5_Z11( DC) / US00n_Znn / EM00n_Znn • PaaS ComputeCS PaaS GRE ( ) NAT 2. IP (=ACL) & IP NAT (IP ) – : XXCOM AP5_Z11( DC) US006_Znn – : US00n_Znn / EM00n_Znn • ( IP ) New!
  • 25. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 29
  • 26. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | IP 30 OCI Classic (SecRules) + + (SecurityRules) NIC + + / + / IP NIC NICOracle Cloud → Oracle Cloud → IP Oracle Cloud → Oracle Cloud → IP NIC
  • 27. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | • / • / ( ) – (Deny) • – (Reject) • – (Permit) • ( ) 31
  • 28. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | • – – – 32 Ins Ins Ins A B ※1 8
  • 29. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | • • ( or IP ) ( or ) 33 (SecRules) ? ? OCI Classic → → IP
  • 30. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | • • • – • TCP • UDP • ICMP • GRE • ESP – ~ 34
  • 31. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | • IP • • IP (IP ) • 35 IP
  • 32. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 36 8 1 10 n n 1 IP 1 n Oracle Cloud(PaaS / IaaS) / / IP IP IP
  • 33. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 37 • – → : – : • • • DBCS PaaS – DBCS ( DBCS ) – : DBCS Compute DBCS Seclist-AP Compute DBCS Seclist-DB
  • 34. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | IP • – – – • • IP • IP 38 (REST API SecurityRules) ACL ? ( / ) IP IP
  • 35. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | OCI Classic 39
  • 36. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 41 OCI Classic • • Oracle Cloud SSL • • VPN • IPsec • • Oracle Cloud DC • Oracle • (1Gbps / 10Gbps) • Oracle Cloud • + SSL VPN (IPsec) Oracle FastConnect Standard Edition Partner Edition (NTT- Com,Verizon ,BT ) Oracle Cloud Oracle Cloud i Oracle Cloud NW NW Oracle Oracle
  • 37. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | VPN OCI Classic Virtual Private Network(VPN) VPN Point-to-Point( ) 42 On-Premise Oracle Cloud VPN
  • 38. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | VPN 43
  • 39. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | • Corente – – Compute – IP (GRE ) • VPNaaS – VPN – – IP Oracle Confidential – Internal 44 2 VPN IP LAN GRE internet IPsec Corente Service Gateway Corente Service Gateway IP LAN internet IPsec VPNaaS Compute JCS DBCS
  • 40. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | VPN • 2017 10 20 ( ) Corente + VPNaaS ( ) VPNaaS – Corente VPNaaS (Corente ) • VPNaaS IP ( VPN ) – : RAC Data Guard Database Cloud Service (2017 12 ) IP VPNaaS NAT Confidential – Oracle Internal/Restricted/Highly Restricted 45
  • 41. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | VPN (2017 10 ) DBCS/JCS ? YES NO IP + 2017 10 ? YES NO Corente + NW(GRE) RAC Data Guard ? YES NO VPNaaS + IP IPsec ? NO YES
  • 42. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | VPN - VPNaaS 47
  • 43. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | VPNaaS Confidential – Oracle Internal/Restricted/Highly Restricted 48 VPNaaS ( DatabaseCompute Compute Gateway Gateway IP Network Compute IP Exchange IP Network Oracle Cloud NAT • VPN VPNaaS) • VPN • NAT • IP Network • IP Network IP Exchange
  • 44. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | VPNaaS • VPN IPsec VPNaaS Oracle • – Cicso 2921 – Cisco ISR 4331 – Cisco ASA5505 – Checkpoint 3200 – Palo Alto 3020 – FortiGate-200D • 49
  • 45. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | VPN (1) • – • IP – (IP ) – IP IP • vNICset( ) • – WAN IP(NAT ) • – ( ) • (PSK) – ( ) • IKE ID( ) – IP_ADDR_V4 VPNaaS IP 50
  • 46. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | VPN (2) • 1 IKE – 1(IKE) VPNaaS • 2 ESP – 2(ESP) VPNaaS • – 2 PFS : Perfect Forward Securecy 51
  • 47. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | VPNaaS TIPS • IKEv1 (IKEv1 IKEv2 ) • VPN ( VPN ) – IP N • VPN VPNaaS IP IP • VPN VPN (= IP ) – (= IP) – (= ) – (PSK) – IP (= IP ) • 1 VPN 1 • VPNaaS 52
  • 48. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | VPN • – VPN > VPNaaS > VPN > • VPNaaS (=Corente Services Gateway) Openswan – Openswan – strongSwan – Libreswan 53
  • 49. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | VPN - Corente 54
  • 50. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | VPN – Corente 55 Corente Services Gateway • Corente Services Gateway – IPsec – OCI Classic – VPN – OS Oracle Compute Cloud Cloud App Net Manager – VPN Corente Services Gateway
  • 51. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | VPN – Corente 56 DC VPN • 1. Corente Services Gateway – Oracle Technology Network Corente Services Gateway – – – Oracle (Oracle Cloud ) • 2. IPsec – IPsec
  • 52. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | VPN – Corente 57 DC GW Corente Services Gateway • A) • ( ) – Oracle VM 3.4.1 – Xen 4.4, VMWare ESX5.5 – Citrix XenServer 6.2 – Microsoft Windows Server 2012 R2 Hyper-V B) Corente • • (Corente AppNet Manager) → Oracle Cloud
  • 53. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | VPN – Corente • DC Corente – • Corente → IP (ANY) 443/TCP ( ) • Corente → IP (ANY) 53/UDP ( ) • Corente 1025-65535/TCP → IP (ANY) 551/TCP (Corente Service Port) • Corente 551/UDP → IP (ANY) 551/UDP (Corente Service Port) – • IP (ANY) 1025-65535/TCP → Corente 551/TCP (Corente Service Port) • IP (ANY) 551/UDP → Corente 551/UDP (Corente Service Port) 58 DC GW Corente Services Gateway Corente Services Gateway Deployment Guide - 2.2 Network Requirements http://docs.oracle.com/cd/E74662_01/E80339/html/install-plan-lan.html#install-plan-lan-fw
  • 54. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | VPN – Corente DC GW Corente Services Gateway 59 : 1.5 GHz Intel-based x86 compatible server : 1 GB RAM : 40 GB IDE/SATA : Integrated 10/100/1000M Ethernet Interfaces Oracle VM Server for x86 Release 3.4.1 or later Xen 4.4 VMware ESX 5.5 Citrix XenServer 6.2 Microsoft Windows Server 2012 R2 Hyper-V ※Corente Services Gateway Deployment Guide (http://docs.oracle.com/cd/E74662_01/E80339/E80339.pdf) 2.1 Corente Services Gateway Installation Requirements
  • 55. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | VPN – Corente 60 DC GW IPsec • (Certified Configuration) IPsec Corente Services Gateway • My Oracle Support – Cisco ASA 5505 (Doc ID 2153452.1) – SonicWall TZ190 (Doc ID 2153603.1) – Juniper JuneOS15 (Doc ID 2164001.1) • – Cisco CSR1000v (How to connect an application on Ravello to Oracle IaaS/PaaS services (e.g. DBCS etc.) over VPN) Oracle Cloud
  • 56. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | VPN – Corente • Oracle Compute Cloud IP Oracle Cloud IP IP GRE 61 NW IP
  • 57. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | VPN – Corente • Corente Services Gateway Compute / PaaS GRE • Oracle Technology Network (Linux, Windows ) • : 10.0.0.0/8 62 NW GRE
  • 58. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 63 Corente Active / Active HA ( IPsec ) VPN IPsec IPsec CSG01 (Active) CSG02 (Active) eth0 IP 192.168.55.0/24 .8 .9 VMvNIC Set:A Name IP Address Next Hop vNIC Distance Outbound 192.168.0.0 A 0 Routes: route add -net 192.168.0.0/24 gw 192.168.55.1 IPsec DC 192.168.0.0/24 (VRRP, HSRP, MHSRP, etc) .100 Static Route Cloud Failover eth0eth1 eth1 OCI Classic VM .2 IPsec F/W
  • 59. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | Corente Services Gateway IPsec • / • Corente Services Gateway 64 VPN • Oracle Cloud • ( ) NAT / NAPT • IPsec VPN • ( )NAT / NAPT• AppNet Manager • • IP( 1 ) • IPsec • IPsec • VPN IP (IP ) • • VPN IPsec • • AppNet Manager IPsec • Oracle Cloud • VPN Oracle Cloud LAN
  • 60. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | VPN 65 ※ (2017 12 ) Database Cloud Service (RAC Data Guard) IP IP VPN IP GRE NW VPNGW IP VPNaaS IPsec & Oracle Cloud Infrastructure Compute Classic - 16 VPNaaS VPN Corente IPsec Oracle Cloud Infrastructure Compute Classic - VPN (Active-Active HA) - HA Corente Corente Services Gateway IP VPN + GRE ※ Corente IPsec Oracle Cloud Infrastructure Compute Classic - VPN (Active-Active HA) - HA Corente Corente Services Gateway VPN
  • 61. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 66
  • 62. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | • Oracle Cloud VPN • • Oracle Cloud IP 1. Compute eth0 IP 192.168.1.0/24 Compute Java AP eth0 eth0 internet .2 .3 .4 IP Oracle Cloud VPN IP IP 67 VPNaaS .253 Database eth0 .5
  • 63. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | • Web • • VPN • (Bastion) 2. Web eth1 Back: 192.168.2.0/24 AP* DB* Bastion eth0 eth0eth1 .2.3 .5 .2 IP Oracle Cloud eth0 .2 internet IP Web VPN IP 69 eth0 .4 NAT NAT Front: 192.168.0.0/24 IP VPNaaS .253 Mgmt: 192.168.1.0/24
  • 64. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | TIPS 70
  • 65. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | OCI Classic • IP IP ( )IP ( )IP – DHCP IP • IP ( )IP – DHCP ( DNS ) • IP IP – IP Site-to-site VPN 71
  • 66. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | • OCI Classic DHCP OS – Oracle Linux (eth0 ) 72 OracleLinux1 eth2 IP 1 IP 2 eth0 eth1 ✓ DNS ✓ IP OracleLinux2 eth0 eth1 eth2 ✓ IP 2 DNS ✓IP 2 IP 1
  • 67. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | • IP • IP(IP ) IP 73 IP IP internet NAT GW
  • 68. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | ( ) • : IP – (Linux) • sudo ip route add 10.196.0.0/16 via $(ip route | awk '/default/ {print $3}’) dev eth0 • sudo ip route change default via 192.168.1.1 dev eth1 – IP ssh ( ssh ) 74
  • 69. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | ( ) • ”instance” ( ) • ”userdata” ( {} ) 75 "instances": [ { "attributes": { "userdata": { "pre-bootstrap": { "script": [ "ip route add 10.196.0.0/16 via $(ip route | awk '/default/ {print $3}') dev eth0", "ip route change default via 192.168.1.1 dev eth1" ] } } }, xxxxxx } ] ※ 10.196.0.0/16 -> IP Eth0 -> NIC 192.168.1.1 -> IP (1 )
  • 70. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | NIC IP 76 • IP 1 IP • 1 → IPeth0 (10.x.x.x) eth1 (192.168.1.2) eth2 (192.168.2.2) internet NAT GIP2GIP1 GIP3 IPnet1 IPnet2 sudo ip rule add from 192.168.1.2 table 100 prio 1000 sudo ip rule add from 192.168.2.2 table 200 prio 1000 sudo ip route add default via 192.168.1.1 dev eth1 table 100 sudo ip route add default via 192.168.2.1 dev eth2 table 200 IPDefault GW IP ※ IP
  • 71. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 1 NIC IP (IP ) 77 • IP NIC IP • IP NIC IP IP IP eth0 192.168.1.2 192.168.1.10 IP (192.168.1.0/24) IP :192.168.1.10/32 : 1 eth0 (vNICSet ) $ sudo ip addr add 192.168.1.10/32 dev eth0 label eth0:1 $ ip addr list eth0 | grep inet inet 192.168.1.2/24 brd 192.168.1.255 scope global eth0 inet 192.168.1.10/24 scope global secondary eth0:1 IP
  • 72. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 78 Instance1 eth0 Instance2 eth0 internet IP NAT Active Standby 35.x.x.x ( IP) 10.x.x.1 ( IP) 10.x.x.2 ( IP) IP Instance1 Instance1 eth0 Instance2 eth0 internet IP NAT Active Standby 35.x.x.x ( IP) 10.x.x.1 ( IP) IP 10.x.x.2 ( IP) • IP IP Instance 1 • IP • Instance1 IP IP Instance2
  • 73. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | Instance1 Instance2 IP 79 eth1 192.168.1.3 eth1 192.168.1.4 IP (192.168.1.0/24) Instance1 • Instance1 Instance2 eth1 2 IP ※ • 2 IP 192.168.1.11eth1:1 Instance eth1 Active Standby • IP NIC OS IP 2 IP • OCI Classic 2 IP ※ L2 2 IP ※ NIC 192.168.1.11 Instance1 eth1 192.168.1.2 : 192.168.1.11 Instance1 Instance2 eth1 192.168.1.3 eth1 192.168.1.4 IP (192.168.1.0/24) 192.168.1.11eth1:1 Instance eth1 Active Standby 192.168.1.2 192.168.1.11 Instance2 eth1
  • 74. Copyright © 2017, Oracle and/or its affiliates. All rights reserved. | 80