On-Premise Network Connection

โญ๏ธโญ๏ธโญ๏ธ๐Ÿ›ฌ Landing ZoneProvides managed IP (L3) connectivity to on-premises networks. This is commonly implemented using hub&spoke network architectures and a combination of VPNs or private network peerings.

TODO: describe IPAM integration

A key challenge with On-Premise network connections is to make them scale

  1. shared vm and vm based NAT system; load balancer inside VPC

    1. cloud foundation maintains NAT
  2. multiple shared VPC with VPC peeringopen in new window;

    1. cloud foundation maintains subnets and VPC for customer projects
  3. completely isolated VPCs and projects

    1. private service connectopen in new window/virtual private connect; consume them even if you do not
  4. don't do onprem; use internet with API gateway

