VPC ๋„คํŠธ์›Œํฌ๋ฅผ ํ”ผ์–ด ๋„คํŠธ์›Œํฌ์— ์—ฐ๊ฒฐํ•˜๋Š” Cloud Router ๋งŒ๋“ค๊ธฐ

์ด ํŽ˜์ด์ง€์—์„œ๋Š” Virtual Private Cloud(VPC) ๋„คํŠธ์›Œํฌ ๋˜๋Š” NCC ๊ฒŒ์ดํŠธ์›จ์ด์™€ ํ”ผ์–ด ๋„คํŠธ์›Œํฌ ๊ฐ„์— ๊ฒฝ๋กœ๋ฅผ ๊ตํ™˜ํ•˜๋Š” ๋ฐ ํ•„์š”ํ•œ Cloud Router ๊ตฌ์„ฑ ํ”„๋กœ์„ธ์Šค๋ฅผ ์„ค๋ช…ํ•ฉ๋‹ˆ๋‹ค. ํ”ผ์–ด ๋„คํŠธ์›Œํฌ๋Š” ์˜จํ”„๋ ˆ๋ฏธ์Šค ๋„คํŠธ์›Œํฌ, AWS ๋˜๋Š” Azure์™€ ๊ฐ™์€ ๋‹ค๋ฅธ ํด๋ผ์šฐ๋“œ ์ œ๊ณต์—…์ฒด์—์„œ ํ˜ธ์ŠคํŒ…ํ•˜๋Š” ๋„คํŠธ์›Œํฌ, Google Cloud์˜ ๋‹ค๋ฅธ VPC ๋„คํŠธ์›Œํฌ์ผ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

Cloud Router ๊ตฌ์„ฑ ํ”„๋กœ์„ธ์Šค๋Š” ๋‹ค์Œ ์„ธ ๊ฐ€์ง€ ์ƒ์œ„ ์ˆ˜์ค€ ์ž‘์—…์œผ๋กœ ๊ตฌ์„ฑ๋ฉ๋‹ˆ๋‹ค.

  1. Cloud Router๋ฅผ ๋งŒ๋“ค๊ธฐ
  2. Google Cloud์—์„œ ๋„คํŠธ์›Œํฌ ์—ฐ๊ฒฐ ์ œํ’ˆ ์„ค์ •ํ•˜๊ธฐ
  3. ํ”ผ์–ด ๋„คํŠธ์›Œํฌ์˜ ๋ผ์šฐํ„ฐ๋กœ ๊ฒฝ๊ณ„ ๊ฒŒ์ดํŠธ์›จ์ด ํ”„๋กœํ† ์ฝœ(BGP) ์„ธ์…˜ ์„ค์ •ํ•˜๊ธฐ

์‹œ์ž‘ํ•˜๊ธฐ ์ „์—

gcloud

์ด ๊ฐ€์ด๋“œ์˜ ๋ช…๋ น์ค„ ์˜ˆ์‹œ๋ฅผ ์‚ฌ์šฉํ•˜๋ ค๋ฉด ๋‹ค์Œ์„ ์ˆ˜ํ–‰ํ•˜์„ธ์š”.

  1. ์ตœ์‹  ๋ฒ„์ „์˜ Google Cloud CLI๋ฅผ ์„ค์น˜ํ•˜๊ฑฐ๋‚˜ ์—…๋ฐ์ดํŠธํ•ฉ๋‹ˆ๋‹ค.
  2. ๊ธฐ๋ณธ ๋ฆฌ์ „ ๋ฐ ์˜์—ญ์„ ์„ค์ •ํ•ฉ๋‹ˆ๋‹ค.

API

์ด ๊ฐ€์ด๋“œ์˜ API ์˜ˆ๋ฅผ ์‚ฌ์šฉํ•˜๋ ค๋ฉด API ์•ก์„ธ์Šค๋ฅผ ์„ค์ •ํ•ฉ๋‹ˆ๋‹ค.

์ž์œจ ์‹œ์Šคํ…œ ๋ฒˆํ˜ธ(ASN)

Cloud Router๋ฅผ ๋งŒ๋“ค ๋•Œ Cloud Router๊ฐ€ ์‚ฌ์šฉํ•˜๋Š” ๋ชจ๋“  BGP ์„ธ์…˜์— ๋Œ€ํ•ด Google ์ธก ASN์„ ์„ ํƒํ•˜๊ฒŒ ๋ฉ๋‹ˆ๋‹ค. ๊ฐ ์ œํ’ˆ์— ๋Œ€ํ•œ ์•ˆ๋‚ด์™€ ASN์„ ์‚ฌ์šฉํ•˜๋Š” ๋ฐฉ๋ฒ•์€ Cloud Router๋ฅผ ์‚ฌ์šฉํ•˜๋Š”Google Cloud ์ œํ’ˆ์— ๋‚˜์™€ ์žˆ์Šต๋‹ˆ๋‹ค.

Cloud Router ๋งŒ๋“ค๊ธฐ

Cloud Router๋ฅผ ๋งŒ๋“ค๋ ค๋ฉด ๋‹ค์Œ ๋‹จ๊ณ„๋ฅผ ๋”ฐ๋ฅด์„ธ์š”.

NCC ๊ฒŒ์ดํŠธ์›จ์ด ์Šคํฌํฌ์™€ ์—ฐ๊ฒฐ๋œ Cloud Router๋ฅผ ๋งŒ๋“ค๋ ค๋ฉด ์ด ์„น์…˜์˜ Google Cloud CLI ๋˜๋Š” Cloud Router API ์•ˆ๋‚ด์— ๋”ฐ๋ผ์•ผ ํ•ฉ๋‹ˆ๋‹ค. ์ž์„ธํ•œ ๋‚ด์šฉ์€ NCC ๊ฒŒ์ดํŠธ์›จ์ด์— ํ•˜์ด๋ธŒ๋ฆฌ๋“œ ์—ฐ๊ฒฐ ์ถ”๊ฐ€๋ฅผ ์ฐธ๊ณ ํ•˜์„ธ์š”.

์ฝ˜์†”

  1. Google Cloud ์ฝ˜์†”์—์„œ Cloud Router ๋งŒ๋“ค๊ธฐ ํŽ˜์ด์ง€๋กœ ์ด๋™ํ•ฉ๋‹ˆ๋‹ค.

    Cloud Router ๋งŒ๋“ค๊ธฐ๋กœ ์ด๋™

  2. Cloud Router์˜ ์„ธ๋ถ€์ •๋ณด๋ฅผ ์ง€์ •ํ•ฉ๋‹ˆ๋‹ค.

    • ์ด๋ฆ„: Cloud Router์˜ ์ด๋ฆ„. ์ด ์ด๋ฆ„์€ Google Cloud ์ฝ˜์†”์— ํ‘œ์‹œ๋˜๋ฉฐ Google Cloud CLI์—์„œ Cloud Router๋ฅผ ์ฐธ์กฐํ•˜๋Š” ๋ฐ ์‚ฌ์šฉ๋ฉ๋‹ˆ๋‹ค(์˜ˆ: my-router).
    • ์„ค๋ช…: (์„ ํƒ์‚ฌํ•ญ) Cloud Router์— ๋Œ€ํ•œ ์„ค๋ช….
    • ๋„คํŠธ์›Œํฌ: ์—ฐ๊ฒฐํ•  ์ธ์Šคํ„ด์Šค๊ฐ€ ํฌํ•จ๋œ VPC ๋„คํŠธ์›Œํฌ(์˜ˆ: my-network)
    • ๋ฆฌ์ „: Cloud Router๋ฅผ ์ฐพ์œผ๋ ค๋Š” ๋ฆฌ์ „(์˜ˆ: asia-east1)
    • Google ASN: ์˜จํ”„๋ ˆ๋ฏธ์Šค ๋„คํŠธ์›Œํฌ์—์„œ ์•„์ง ์‚ฌ์šฉํ•˜๊ณ  ์žˆ์ง€ ์•Š์€ ๋ชจ๋“  ๋น„๊ณต๊ฐœ ASN(64512-65534, 4200000000-4294967294). Cloud Router๋ฅผ ์‚ฌ์šฉํ•˜๋ ค๋ฉด ๋น„๊ณต๊ฐœ ASN์„ ์‚ฌ์šฉํ•ด์•ผ ํ•˜์ง€๋งŒ ์˜จํ”„๋ ˆ๋ฏธ์Šค ASN์€ ๊ณต๊ฐœ ๋˜๋Š” ๋น„๊ณต๊ฐœ์ผ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

    • BGP ํ”ผ์–ด ์—ฐ๊ฒฐ ์œ ์ง€ ๊ฐ„๊ฒฉ: ํ”ผ์–ด ๋ผ์šฐํ„ฐ๋กœ ์ „์†ก๋˜๋Š” ๋‘ ๊ฐœ์˜ ์—ฐ์† BGP ์—ฐ๊ฒฐ ์œ ์ง€ ๋ฉ”์‹œ์ง€ ์‚ฌ์ด์˜ ๊ฐ„๊ฒฉ์ž…๋‹ˆ๋‹ค. ์ด ๊ฐ’์€ ๊ฐ„๊ฒฉ์˜ ์ดˆ ๋‹จ์œ„ ๊ฐ’์„ ์ง€์ •ํ•˜๋Š” 20~60 ์‚ฌ์ด์˜ ์ •์ˆ˜์—ฌ์•ผ ํ•ฉ๋‹ˆ๋‹ค. ๊ธฐ๋ณธ๊ฐ’์€ 20์ดˆ์ž…๋‹ˆ๋‹ค. ์ž์„ธํ•œ ๋‚ด์šฉ์€ BGP ํƒ€์ด๋จธ ๊ด€๋ฆฌ๋ฅผ ์ฐธ์กฐํ•˜์„ธ์š”.
    • BGP ์‹๋ณ„์ž: ์„ ํƒ์‚ฌํ•ญ. ๋„คํŠธ์›Œํฌ์—์„œ Cloud Router๋ฅผ ๊ณ ์œ ํ•˜๊ฒŒ ์‹๋ณ„ํ•˜๋Š” BGP ์‹๋ณ„์ž๋Š” ๋ผ์šฐํ„ฐ ID๋ผ๊ณ ๋„ ํ•ฉ๋‹ˆ๋‹ค. ์ƒ๋žตํ•  ๊ฒฝ์šฐ, IPv4 BGP ์„ธ์…˜์ด ์žˆ๋Š” Cloud Router๋Š” IPv4 BGP ์ฃผ์†Œ ์ค‘ ํ•˜๋‚˜๋ฅผ BGP ์‹๋ณ„์ž๋กœ ์‚ฌ์šฉํ•˜๊ณ  ์ด Cloud Router์— ์ฒซ ๋ฒˆ์งธ IPv6 ์ธํ„ฐํŽ˜์ด์Šค๋ฅผ ์ถ”๊ฐ€ํ•˜์—ฌ ํ•„๋“œ๋ฅผ ์ž๋™์œผ๋กœ ์ฑ„์›๋‹ˆ๋‹ค.

      ์ž์„ธํ•œ ๋‚ด์šฉ์€ Cloud Router์˜ BGP ์‹๋ณ„์ž ๋ฒ”์œ„ ๊ตฌ์„ฑ์„ ์ฐธ์กฐํ•˜์„ธ์š”.

  3. ์„ ํƒ์‚ฌํ•ญ: ์ปค์Šคํ…€ ๊ณต์ง€ ๊ฒฝ๋กœ๋ฅผ ์ง€์ •ํ•˜๋ ค๋ฉด ๊ณต์ง€๋œ ๊ฒฝ๋กœ ์„น์…˜์œผ๋กœ ์ด๋™ํ•ฉ๋‹ˆ๋‹ค. ์ž์„ธํ•œ ๋‚ด์šฉ์€ ๊ณต์ง€๋œ ๊ฒฝ๋กœ๋ฅผ ์ฐธ์กฐํ•˜์„ธ์š”.
    1. ์ปค์Šคํ…€ ๊ฒฝ๋กœ๋ฅผ ์ง€์ •ํ•˜๋ ค๋ฉด ์ปค์Šคํ…€ ๊ฒฝ๋กœ ๋งŒ๋“ค๊ธฐ๋ฅผ ์„ ํƒํ•ฉ๋‹ˆ๋‹ค.
    2. Cloud Router์—์„œ ๋ณด์ด๋Š” ์„œ๋ธŒ๋„ท์„ ๊ณต์ง€ํ• ์ง€ ์„ ํƒํ•ฉ๋‹ˆ๋‹ค. ์ด ์˜ต์…˜์„ ์‚ฌ์šฉ ์„ค์ •ํ•˜๋ฉด Cloud Router์˜ ๊ธฐ๋ณธ ๋™์ž‘์„ ๋ชจ๋ฐฉํ•ฉ๋‹ˆ๋‹ค.
    3. ๊ณต์ง€๋œ ๊ฒฝ๋กœ๋ฅผ ์ถ”๊ฐ€ํ•˜๋ ค๋ฉด ์ปค์Šคํ…€ ๊ฒฝ๋กœ ์ถ”๊ฐ€๋ฅผ ์„ ํƒํ•œ ํ›„ ๊ตฌ์„ฑํ•ฉ๋‹ˆ๋‹ค.
  4. ์„ค์ •์„ ์ €์žฅํ•˜๊ณ  Cloud Router๋ฅผ ๋งŒ๋“ค๋ ค๋ฉด ๋งŒ๋“ค๊ธฐ๋ฅผ ํด๋ฆญํ•ฉ๋‹ˆ๋‹ค. ์ƒˆ Cloud Router๊ฐ€ Cloud Router ๋“ฑ๋ก ํŽ˜์ด์ง€์— ๋‚˜ํƒ€๋‚ฉ๋‹ˆ๋‹ค. ์„ธ๋ถ€์ •๋ณด๋ฅผ ๋ณด๊ณ  BGP ์„ธ์…˜์„ ๊ตฌ์„ฑํ•˜๋ ค๋ฉด ํ•ด๋‹น ์„ธ์…˜์„ ์„ ํƒํ•ฉ๋‹ˆ๋‹ค.

gcloud

gcloud compute routers create ๋ช…๋ น์–ด๋Š” ์ƒˆ Cloud Router๋ฅผ ๋งŒ๋“ญ๋‹ˆ๋‹ค. Cloud Router๋Š” VPC ๋„คํŠธ์›Œํฌ ๋˜๋Š” NCC ๊ฒŒ์ดํŠธ์›จ์ด ์Šคํฌํฌ์™€ ์—ฐ๊ฒฐ๋ฉ๋‹ˆ๋‹ค. ๋งŒ๋“  ํ›„์—๋Š” ๋ฆฌ์ „, ์—ฐ๊ฒฐ๋œ VPC ๋„คํŠธ์›Œํฌ ๋˜๋Š” ์—ฐ๊ฒฐ๋œ NCC ๊ฒŒ์ดํŠธ์›จ์ด ์Šคํฌํฌ๋ฅผ ๋ณ€๊ฒฝํ•  ์ˆ˜ ์—†์Šต๋‹ˆ๋‹ค.

--set-advertisement-groups=ALL_SUBNETS ํ”Œ๋ž˜๊ทธ๋Š” --advertisement-mode=CUSTOM ํ”Œ๋ž˜๊ทธ๊ฐ€ ์„ค์ •๋œ ๊ฒฝ์šฐ์—๋งŒ ์œ ํšจํ•ฉ๋‹ˆ๋‹ค. ์ด ํ”Œ๋ž˜๊ทธ์™€ ๊ฐ’์ด ์ง€์ •๋˜๋ฉด ๋ผ์šฐํ„ฐ ์ˆ˜์ค€ ๊ด‘๊ณ ์— VPC ๋„คํŠธ์›Œํฌ์˜ ๋™์  ๋ผ์šฐํŒ… ๋ชจ๋“œ์— ๋”ฐ๋ฅธ ๋กœ์ปฌ ์„œ๋ธŒ๋„ท ๋ฒ”์œ„๊ฐ€ ํฌํ•จ๋ฉ๋‹ˆ๋‹ค.

์ž์„ธํ•œ ๋‚ด์šฉ์€ ์„œ๋ธŒ๋„ท ๋ฒ”์œ„ ๊ด‘๊ณ ๋ฅผ ์ฐธ๊ณ ํ•˜์„ธ์š”.

Cloud Router๊ฐ€ Cloud Interconnect๋ฅผ ํ†ตํ•œ HA VPN์˜ BGP ์„ธ์…˜์„ ๊ด€๋ฆฌํ•˜๋Š” ๊ฒฝ์šฐ์—๋งŒ --encrypted-interconnect-router ํ”Œ๋ž˜๊ทธ๋ฅผ ํฌํ•จํ•ฉ๋‹ˆ๋‹ค.

  • VPC ๋„คํŠธ์›Œํฌ์˜ ๋ฆฌ์ „๊ณผ ์—ฐ๊ฒฐ๋œ Cloud Router๋ฅผ ๋งŒ๋“ค๋ ค๋ฉด ๋‹ค์Œ ๋ช…๋ น์–ด๋ฅผ ์‚ฌ์šฉํ•ฉ๋‹ˆ๋‹ค.

    gcloud compute routers create ROUTER_NAME \
        --project=PROJECT_ID \
        --network=NETWORK \
        --region=REGION\
        --asn=ASN_NUMBER \
        [--advertisement-mode=ADVERTISEMENT_MODE] \
        [--set-advertisement-groups=ALL_SUBNETS] \
        [--set-advertisement-ranges=CUSTOM_ADVERTISED_RANGES] \
        [--bgp-identifier-range=ROUTER_IDENTIFIER_RANGE] \
        [--keepalive-interval=KEEPALIVE_TIMER] \
        [--encrypted-interconnect-router]
    

    ๋‹ค์Œ์„ ๋ฐ”๊ฟ‰๋‹ˆ๋‹ค.

    • ROUTER_NAME: Cloud Router์˜ ์ด๋ฆ„

    • PROJECT_ID: Cloud Router๊ฐ€ ํฌํ•จ๋œ ํ”„๋กœ์ ํŠธ์˜ ํ”„๋กœ์ ํŠธ ID

    • NETWORK: Cloud Router๋ฅผ ํฌํ•จํ•˜๋Š” VPC ๋„คํŠธ์›Œํฌ

    • REGION: Cloud Router๊ฐ€ ํฌํ•จ๋œ ๋ฆฌ์ „

    • ASN_NUMBER: ์˜จํ”„๋ ˆ๋ฏธ์Šค ๋„คํŠธ์›Œํฌ์—์„œ ์•„์ง ์‚ฌ์šฉํ•˜๊ณ  ์žˆ์ง€ ์•Š์€ ๋ชจ๋“  ๋น„๊ณต๊ฐœ ASN(64512-65534, 4200000000-4294967294)

      Cloud Router๋ฅผ ์‚ฌ์šฉํ•˜๋ ค๋ฉด ๋น„๊ณต๊ฐœ ASN๋ฅผ ์‚ฌ์šฉํ•ด์•ผ ํ•˜์ง€๋งŒ ์˜จํ”„๋ ˆ๋ฏธ์Šค ASN์€ ๊ณต๊ฐœ ๋˜๋Š” ๋น„๊ณต๊ฐœ์ผ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

    • ADVERTISEMENT_MODE: ๋ผ์šฐํ„ฐ ์ˆ˜์ค€ ๊ณต์ง€ ๋ชจ๋“œ ์ง€์ •.

      ์œ ํšจํ•œ ๊ฐ’์€ CUSTOM ๋˜๋Š” DEFAULT์ž…๋‹ˆ๋‹ค. --advertisement-mode ํ”Œ๋ž˜๊ทธ๋ฅผ ์ƒ๋žตํ•˜๋ฉด Google Cloud ๋Š” ๋ผ์šฐํ„ฐ ์ˆ˜์ค€์—์„œ DEFAULT ๊ณต์ง€ ๋ชจ๋“œ๋ฅผ ์‚ฌ์šฉํ•ฉ๋‹ˆ๋‹ค. ๋ผ์šฐํ„ฐ ์ˆ˜์ค€ ๊ณต์ง€ ๋ชจ๋“œ์˜ ์˜๋ฏธ์™€ ๊ฐœ๋ณ„ BGP ์„ธ์…˜ ๊ณต์ง€์— ๋ฏธ์น˜๋Š” ์˜ํ–ฅ์— ๊ด€ํ•œ ์ž์„ธํ•œ ๋‚ด์šฉ์€ ๊ณต์ง€ ๋ชจ๋“œ ๋ฐ ์œ ํšจํ•œ ๊ณต์ง€๋ฅผ ์ฐธ๊ณ ํ•˜์„ธ์š”.

    • CUSTOM_ADVERTISED_RANGES: --advertisement-mode=CUSTOM์ผ ๋•Œ๋งŒ ์œ ํšจํ•ฉ๋‹ˆ๋‹ค. ๋ผ์šฐํ„ฐ ์ˆ˜์ค€ ๊ด‘๊ณ ์— ํฌํ•จํ•  CIDR ํ˜•์‹์˜ ๋งž์ถค IP ์ฃผ์†Œ ๋ฒ”์œ„ ๋˜๋Š” ๊ฐœ๋ณ„ IP ์ฃผ์†Œ์˜ ์„ ํƒ์  ๋ชฉ๋ก์ž…๋‹ˆ๋‹ค.

      ๊ฐœ๋ณ„ IPv4 ์ฃผ์†Œ๋Š” /32 ์„œ๋ธŒ๋„ท ๋งˆ์Šคํฌ๊ฐ€ ์žˆ๋Š” CIDR๋กœ ํ•ด์„๋˜๊ณ  ๊ฐœ๋ณ„ IPv6 ์ฃผ์†Œ๋Š” /128 ์„œ๋ธŒ๋„ท ๋งˆ์Šคํฌ๊ฐ€ ์žˆ๋Š” CIDR๋กœ ํ•ด์„๋ฉ๋‹ˆ๋‹ค. ์ปค์Šคํ…€ ๊ฒฝ๋กœ ๊ณต์ง€์˜ ์ตœ๋Œ€ ๊ฐœ์ˆ˜์— ๋Œ€ํ•œ ์ž์„ธํ•œ ๋‚ด์šฉ์€ ํ•œ๋„๋ฅผ ์ฐธ๊ณ ํ•˜์„ธ์š”.

    • ROUTER_IDENTIFIER_RANGE: Cloud Router์˜ ๊ณ ์œ  ์‹๋ณ„์ž ์—ญํ• ์„ ํ•˜๋Š” ์„ ํƒ์  IPv4 ์ฃผ์†Œ ๋ฒ”์œ„

      ์ž์„ธํ•œ ๋‚ด์šฉ์€ BGP ์‹๋ณ„์ž ๋ฒ”์œ„ ๊ตฌ์„ฑ์„ ์ฐธ์กฐํ•˜์„ธ์š”.

    • KEEPALIVE_TIMER: BGP ์—ฐ๊ฒฐ ์œ ์ง€ ํƒ€์ด๋จธ๋ฅผ ์ •์˜ํ•˜๋Š” ์„ ํƒ์  ์‹œ๊ฐ„(์ดˆ)

      ์œ ํšจํ•œ ๊ฐ’์€ 20 ์ด์ƒ 60 ์ดํ•˜์ž…๋‹ˆ๋‹ค. --keepalive-interval ํ”Œ๋ž˜๊ทธ๋ฅผ ์ƒ๋žตํ•˜๋ฉด Cloud Router๋Š” 20์ดˆ BGP ํ™œ์„ฑ ์œ ์ง€ ํƒ€์ด๋จธ๋ฅผ ์‚ฌ์šฉํ•ฉ๋‹ˆ๋‹ค. ์ž์„ธํ•œ ๋‚ด์šฉ์€ ์—ฐ๊ฒฐ ์œ ์ง€ ํƒ€์ด๋จธ๋ฅผ ์ฐธ์กฐํ•˜์„ธ์š”.

  • NCC ๊ฒŒ์ดํŠธ์›จ์ด ์Šคํฌํฌ์™€ ์—ฐ๊ฒฐ๋œ Cloud Router๋ฅผ ๋งŒ๋“ค๋ ค๋ฉด ๋‹ค์Œ ๋ช…๋ น์–ด๋ฅผ ์‚ฌ์šฉํ•˜์„ธ์š”.

    --advertisement-mode=CUSTOM ํ”Œ๋ž˜๊ทธ๋ฅผ ์‚ฌ์šฉํ•˜์—ฌ ๋ผ์šฐํ„ฐ ์ˆ˜์ค€ ๊ณต์ง€ ๋ชจ๋“œ๋ฅผ CUSTOM์œผ๋กœ ์„ค์ •ํ•˜์—ฌ ๋ผ์šฐํ„ฐ ์ˆ˜์ค€ ์ปค์Šคํ…€ ๊ฒฝ๋กœ ๊ณต์ง€๋ฅผ ์ง€์ •ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

    ๋ผ์šฐํ„ฐ ์ˆ˜์ค€ ๊ณต์ง€ ๋ชจ๋“œ๊ฐ€ ๊ฐœ๋ณ„ BGP ์„ธ์…˜ ๊ณต์ง€์— ๋ฏธ์น˜๋Š” ์˜ํ–ฅ์— ๊ด€ํ•œ ์ž์„ธํ•œ ๋‚ด์šฉ์€ ์œ ํšจํ•œ ๊ณต์ง€๋ฅผ ์ฐธ๊ณ ํ•˜์„ธ์š”.

    gcloud compute routers create ROUTER_NAME \
        --project=PROJECT_ID \
        --ncc-gateway=NCC_GATEWAY_URI \
        --region=REGION\
        --asn=ASN_NUMBER \
        --advertisement-mode=CUSTOM \
        --set-advertisement-ranges=CUSTOM_ADVERTISED_RANGES \
        [--bgp-identifier-range=ROUTER_IDENTIFIER_RANGE] \
        [--keepalive-interval=KEEPALIVE_TIMER] \
    

    ๋‹ค์Œ์„ ๋ฐ”๊ฟ‰๋‹ˆ๋‹ค.

    • ROUTER_NAME: Cloud Router์˜ ์ด๋ฆ„

    • PROJECT_ID: Cloud Router๊ฐ€ ํฌํ•จ๋œ ํ”„๋กœ์ ํŠธ์˜ ํ”„๋กœ์ ํŠธ ID

    • NCC_GATEWAY_URI: ๋ผ์šฐํ„ฐ์™€ ์—ฐ๊ฒฐ๋œ NCC ๊ฒŒ์ดํŠธ์›จ์ด์˜ ์ „์ฒด URI. URI ํ˜•์‹์€ ๋‹ค์Œ ํŒจํ„ด์„ ๋”ฐ๋ฆ…๋‹ˆ๋‹ค. https://networkconnectivity.googleapis.com/v1/projects/PROJECT_ID/locations/REGION/spokes/GATEWAY_SPOKE_NAME

    • REGION: Cloud Router๊ฐ€ ํฌํ•จ๋œ ๋ฆฌ์ „

    • ASN_NUMBER: ์˜จํ”„๋ ˆ๋ฏธ์Šค ๋„คํŠธ์›Œํฌ์—์„œ ์•„์ง ์‚ฌ์šฉํ•˜๊ณ  ์žˆ์ง€ ์•Š์€ ๋ชจ๋“  ๋น„๊ณต๊ฐœ ASN(64512-65534, 4200000000-4294967294)

      Cloud Router๋ฅผ ์‚ฌ์šฉํ•˜๋ ค๋ฉด ๋น„๊ณต๊ฐœ ASN๋ฅผ ์‚ฌ์šฉํ•ด์•ผ ํ•˜์ง€๋งŒ ์˜จํ”„๋ ˆ๋ฏธ์Šค ASN์€ ๊ณต๊ฐœ ๋˜๋Š” ๋น„๊ณต๊ฐœ์ผ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

    • --advertisement-mode=CUSTOM: ๋ผ์šฐํ„ฐ ์ˆ˜์ค€ ๋งž์ถค ๊ฒฝ๋กœ ๊ณต์ง€๋ฅผ ์ง€์ •ํ•  ์ˆ˜ ์žˆ๋„๋ก ๋ผ์šฐํ„ฐ ์ˆ˜์ค€ ๊ณต์ง€ ๋ชจ๋“œ๋ฅผ CUSTOM์œผ๋กœ ์„ค์ •ํ•ฉ๋‹ˆ๋‹ค.

      ๋ผ์šฐํ„ฐ ์ˆ˜์ค€ ๊ณต์ง€ ๋ชจ๋“œ๊ฐ€ ๊ฐœ๋ณ„ BGP ์„ธ์…˜ ๊ณต์ง€์— ๋ฏธ์น˜๋Š” ์˜ํ–ฅ์— ๊ด€ํ•œ ์ž์„ธํ•œ ๋‚ด์šฉ์€ ์œ ํšจํ•œ ๊ณต์ง€๋ฅผ ์ฐธ๊ณ ํ•˜์„ธ์š”.

    • CUSTOM_ADVERTISED_RANGES: ๋ผ์šฐํ„ฐ ์ˆ˜์ค€ ๊ด‘๊ณ ์— ํฌํ•จํ•  CIDR ํ˜•์‹์˜ ๋งž์ถค IP ์ฃผ์†Œ ๋ฒ”์œ„ ๋˜๋Š” ๊ฐœ๋ณ„ IP ์ฃผ์†Œ ๋ชฉ๋ก

      ๊ฐœ๋ณ„ IPv4 ์ฃผ์†Œ๋Š” /32 ์„œ๋ธŒ๋„ท ๋งˆ์Šคํฌ๊ฐ€ ์žˆ๋Š” CIDR๋กœ ํ•ด์„๋˜๊ณ  ๊ฐœ๋ณ„ IPv6 ์ฃผ์†Œ๋Š” /128 ์„œ๋ธŒ๋„ท ๋งˆ์Šคํฌ๊ฐ€ ์žˆ๋Š” CIDR๋กœ ํ•ด์„๋ฉ๋‹ˆ๋‹ค. ์ปค์Šคํ…€ ๊ฒฝ๋กœ ๊ณต์ง€์˜ ์ตœ๋Œ€ ๊ฐœ์ˆ˜์— ๋Œ€ํ•œ ์ž์„ธํ•œ ๋‚ด์šฉ์€ ํ•œ๋„๋ฅผ ์ฐธ๊ณ ํ•˜์„ธ์š”.

    • ROUTER_IDENTIFIER_RANGE: Cloud Router์˜ ๊ณ ์œ  ์‹๋ณ„์ž ์—ญํ• ์„ ํ•˜๋Š” ์„ ํƒ์  IPv4 ์ฃผ์†Œ ๋ฒ”์œ„

      ์ž์„ธํ•œ ๋‚ด์šฉ์€ BGP ์‹๋ณ„์ž ๋ฒ”์œ„ ๊ตฌ์„ฑ์„ ์ฐธ์กฐํ•˜์„ธ์š”.

    • KEEPALIVE_TIMER: BGP ์—ฐ๊ฒฐ ์œ ์ง€ ํƒ€์ด๋จธ๋ฅผ ์ •์˜ํ•˜๋Š” ์„ ํƒ์  ์‹œ๊ฐ„(์ดˆ)

      ์œ ํšจํ•œ ๊ฐ’์€ 20 ์ด์ƒ 60 ์ดํ•˜์ž…๋‹ˆ๋‹ค. --keepalive-interval ํ”Œ๋ž˜๊ทธ๋ฅผ ์ƒ๋žตํ•˜๋ฉด Cloud Router๋Š” 20์ดˆ BGP ํ™œ์„ฑ ์œ ์ง€ ํƒ€์ด๋จธ๋ฅผ ์‚ฌ์šฉํ•ฉ๋‹ˆ๋‹ค. ์ž์„ธํ•œ ๋‚ด์šฉ์€ ์—ฐ๊ฒฐ ์œ ์ง€ ํƒ€์ด๋จธ๋ฅผ ์ฐธ์กฐํ•˜์„ธ์š”.

Terraform

Cloud Router์šฉGoogle Cloud Terraform ๋ชจ๋“ˆ์„ ์‚ฌ์šฉํ•ฉ๋‹ˆ๋‹ค.

module "cloud_router" {
  source  = "terraform-google-modules/cloud-router/google"
  version = "~> 7.0"

  name   = "my-router"
  region = "us-central1"

  bgp = {
    # The ASN (16550, 64512 - 65534, 4200000000 - 4294967294) can be any private ASN
    # not already used as a peer ASN in the same region and network or 16550 for Partner Interconnect.
    asn = "65001"
  }

  project = var.project_id
  network = module.vpc.network_name
}

Terraform ๊ตฌ์„ฑ์„ ์ ์šฉํ•˜๊ฑฐ๋‚˜ ์‚ญ์ œํ•˜๋Š” ๋ฐฉ๋ฒ•์€ ๊ธฐ๋ณธ Terraform ๋ช…๋ น์–ด๋ฅผ ์ฐธ๊ณ ํ•˜์„ธ์š”.

API

routers.insert ๋ฉ”์„œ๋“œ๋Š” ์ƒˆ Cloud Router๋ฅผ ๋งŒ๋“ญ๋‹ˆ๋‹ค. Cloud Router๋Š” VPC ๋„คํŠธ์›Œํฌ ๋˜๋Š” NCC ๊ฒŒ์ดํŠธ์›จ์ด ์Šคํฌํฌ์™€ ์—ฐ๊ฒฐ๋ฉ๋‹ˆ๋‹ค. ๋งŒ๋“  ํ›„์—๋Š” ๋ฆฌ์ „, ์—ฐ๊ฒฐ๋œ VPC ๋„คํŠธ์›Œํฌ ๋˜๋Š” ์—ฐ๊ฒฐ๋œ NCC ๊ฒŒ์ดํŠธ์›จ์ด ์Šคํฌํฌ๋ฅผ ๋ณ€๊ฒฝํ•  ์ˆ˜ ์—†์Šต๋‹ˆ๋‹ค.

"advertisedGroups": [ALL_SUBNETS] ํ”Œ๋ž˜๊ทธ๋Š” bgp.advertiseMode: CUSTOM, bgp.advertisedGroups: [ALL_SUBNETS]์ธ ๊ฒฝ์šฐ์—๋งŒ ์œ ํšจํ•˜๋ฉฐ, ์ด ๊ฒฝ์šฐ ๋ผ์šฐํ„ฐ ์ˆ˜์ค€ ๊ณต์ง€์—๋Š” VPC ๋„คํŠธ์›Œํฌ์˜ ๋™์  ๋ผ์šฐํŒ… ๋ชจ๋“œ์— ๋”ฐ๋ผ ๋กœ์ปฌ ์„œ๋ธŒ๋„ท ๋ฒ”์œ„๊ฐ€ ํฌํ•จ๋ฉ๋‹ˆ๋‹ค. ์ž์„ธํ•œ ๋‚ด์šฉ์€ ์„œ๋ธŒ๋„ท ๋ฒ”์œ„ ๊ด‘๊ณ ๋ฅผ ์ฐธ๊ณ ํ•˜์„ธ์š”.

encryptedInterconnectRouter ํ”Œ๋ž˜๊ทธ๋Š” Cloud Router๊ฐ€ Cloud Interconnect๋ฅผ ํ†ตํ•œ HA VPN์˜ BGP ์„ธ์…˜์„ ๊ด€๋ฆฌํ•˜๋Š”์ง€ ์—ฌ๋ถ€๋ฅผ ๋‚˜ํƒ€๋‚ด๋Š” ๋ถˆ๋ฆฌ์–ธ ๋งค๊ฐœ๋ณ€์ˆ˜์ž…๋‹ˆ๋‹ค.

  • VPC ๋„คํŠธ์›Œํฌ์˜ ๋ฆฌ์ „๊ณผ ์—ฐ๊ฒฐ๋œ Cloud Router๋ฅผ ๋งŒ๋“ค๋ ค๋ฉด ๋‹ค์Œ ์š”์ฒญ์„ ์‚ฌ์šฉํ•˜์„ธ์š”.

         POST https://compute.googleapis.com/compute/v1/projects/PROJECT_ID/regions/REGION/routers
         {
           "name": "ROUTER_NAME",
           "network": "NETWORK",
           "encryptedInterconnectRouter": True|False,
           "bgp": {
             "asn": "ASN_NUMBER",
             "advertiseMode": "ADVERTISEMENT_MODE",
             "advertisedGroups": [ALL_SUBNETS],
             "advertisedIpRanges": [
                {
                   "range": CUSTOM_ADVERTISED_RANGE,
                   "description": CUSTOM_ADVERTISED_RANGE_DESCRIPTION
                }, ...
             ],
             "identifierRange": ROUTER_IDENTIFIER_RANGE,
             "keepaliveInterval": KEEPALIVE_TIMER
           }
         }
    

    ๋‹ค์Œ์„ ๋ฐ”๊ฟ‰๋‹ˆ๋‹ค.

    • ROUTER_NAME: Cloud Router์˜ ์ด๋ฆ„

    • PROJECT_ID: Cloud Router๊ฐ€ ํฌํ•จ๋œ ํ”„๋กœ์ ํŠธ์˜ ํ”„๋กœ์ ํŠธ ID

    • NETWORK: Cloud Router๋ฅผ ํฌํ•จํ•˜๋Š” VPC ๋„คํŠธ์›Œํฌ

    • REGION: Cloud Router๊ฐ€ ํฌํ•จ๋œ ๋ฆฌ์ „

    • ASN_NUMBER: ์˜จํ”„๋ ˆ๋ฏธ์Šค ๋„คํŠธ์›Œํฌ์—์„œ ์•„์ง ์‚ฌ์šฉํ•˜๊ณ  ์žˆ์ง€ ์•Š์€ ๋ชจ๋“  ๋น„๊ณต๊ฐœ ASN(64512-65534, 4200000000-4294967294)

      Cloud Router๋ฅผ ์‚ฌ์šฉํ•˜๋ ค๋ฉด ๋น„๊ณต๊ฐœ ASN๋ฅผ ์‚ฌ์šฉํ•ด์•ผ ํ•˜์ง€๋งŒ ์˜จํ”„๋ ˆ๋ฏธ์Šค ASN์€ ๊ณต๊ฐœ ๋˜๋Š” ๋น„๊ณต๊ฐœ์ผ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

    • ADVERTISEMENT_MODE: ๋ผ์šฐํ„ฐ ์ˆ˜์ค€ ๊ณต์ง€ ๋ชจ๋“œ ์ง€์ •.

      ์œ ํšจํ•œ ๊ฐ’์€ CUSTOM ๋˜๋Š” DEFAULT์ž…๋‹ˆ๋‹ค. bgp.advertiseMode๋ฅผ ์ƒ๋žตํ•˜๋ฉด Google Cloud ๋Š” ๋ผ์šฐํ„ฐ ์ˆ˜์ค€์—์„œ DEFAULT ๊ณต์ง€ ๋ชจ๋“œ๋ฅผ ์‚ฌ์šฉํ•ฉ๋‹ˆ๋‹ค. ๋ผ์šฐํ„ฐ ์ˆ˜์ค€ ๊ณต์ง€ ๋ชจ๋“œ์˜ ์˜๋ฏธ์™€ ๊ฐœ๋ณ„ BGP ์„ธ์…˜ ๊ณต์ง€์— ๋ฏธ์น˜๋Š” ์˜ํ–ฅ์— ๊ด€ํ•œ ์ž์„ธํ•œ ๋‚ด์šฉ์€ ๊ณต์ง€ ๋ชจ๋“œ ๋ฐ ์œ ํšจํ•œ ๊ณต์ง€๋ฅผ ์ฐธ๊ณ ํ•˜์„ธ์š”.

    • CUSTOM_ADVERTISED_RANGE ๋ฐ CUSTOM_ADVERTISED_RANGE_DESCRIPTION: ๋ผ์šฐํ„ฐ ์ˆ˜์ค€ ๋งž์ถค ๊ฒฝ๋กœ ๊ณต์ง€๋ฅผ ์ง€์ •ํ•˜๋Š” ์‚ฌ์ „์˜ ํ‚ค

      bgp.advertisedIpRanges๋Š” ๊ฐ ๋งž์ถค ๊ฒฝ๋กœ ๊ด‘๊ณ  ์‚ฌ์ „์ด ํฌํ•จ๋œ ๋ชฉ๋ก์ž…๋‹ˆ๋‹ค. bgp.advertisedIpRanges์„ ์ง€์ •ํ•˜๋ ค๋ฉด bgp.advertiseMode: CUSTOM์ด ํ•„์š”ํ•ฉ๋‹ˆ๋‹ค. ๊ฐ CUSTOM_ADVERTISED_RANGE๋Š” CIDR ํ˜•์‹์˜ IP ์ฃผ์†Œ ๋ฒ”์œ„ ๋˜๋Š” ๊ฐœ๋ณ„ IP ์ฃผ์†Œ์ž…๋‹ˆ๋‹ค. ๊ฐœ๋ณ„ IPv4 ์ฃผ์†Œ๋Š” /32 ์„œ๋ธŒ๋„ท ๋งˆ์Šคํฌ๊ฐ€ ์žˆ๋Š” CIDR๋กœ ํ•ด์„๋˜๊ณ  ๊ฐœ๋ณ„ IPv6 ์ฃผ์†Œ๋Š” /128 ์„œ๋ธŒ๋„ท ๋งˆ์Šคํฌ๊ฐ€ ์žˆ๋Š” CIDR๋กœ ํ•ด์„๋ฉ๋‹ˆ๋‹ค. ์ปค์Šคํ…€ ๊ฒฝ๋กœ ๊ณต์ง€์˜ ์ตœ๋Œ€ ๊ฐœ์ˆ˜์— ๋Œ€ํ•œ ์ž์„ธํ•œ ๋‚ด์šฉ์€ ํ•œ๋„๋ฅผ ์ฐธ๊ณ ํ•˜์„ธ์š”. ๊ฐ CUSTOM_ADVERTISED_RANGE_DESCRIPTION์€ ๊ด‘๊ณ ๋ฅผ ์„ค๋ช…ํ•˜๋Š” ๋ฌธ์ž์—ด์ž…๋‹ˆ๋‹ค.

    • ROUTER_IDENTIFIER_RANGE: Cloud Router์˜ ๊ณ ์œ  ์‹๋ณ„์ž ์—ญํ• ์„ ํ•˜๋Š” IPv4 ์ฃผ์†Œ ๋ฒ”์œ„๋ฅผ ์ •์˜ํ•ฉ๋‹ˆ๋‹ค.

      ์ž์„ธํ•œ ๋‚ด์šฉ์€ BGP ์‹๋ณ„์ž ๋ฒ”์œ„ ๊ตฌ์„ฑ์„ ์ฐธ์กฐํ•˜์„ธ์š”.

    • KEEPALIVE_TIMER: BGP ์—ฐ๊ฒฐ ์œ ์ง€ ํƒ€์ด๋จธ๋ฅผ ์ •์˜ํ•˜๋Š” ์„ ํƒ์  ์‹œ๊ฐ„(์ดˆ)

      ์œ ํšจํ•œ ๊ฐ’์€ 20 ์ด์ƒ 60 ์ดํ•˜์ž…๋‹ˆ๋‹ค. bgp.keepaliveInterval๋ฅผ ์ƒ๋žตํ•˜๋ฉด Cloud Router๋Š” 20์ดˆ BGP ์—ฐ๊ฒฐ ์œ ์ง€ ํƒ€์ด๋จธ๋ฅผ ์‚ฌ์šฉํ•ฉ๋‹ˆ๋‹ค. ์ž์„ธํ•œ ๋‚ด์šฉ์€ ์—ฐ๊ฒฐ ์œ ์ง€ ํƒ€์ด๋จธ๋ฅผ ์ฐธ์กฐํ•˜์„ธ์š”.

    • encryptedInterconnectRouter: Cloud Router๊ฐ€ Cloud Interconnect๋ฅผ ํ†ตํ•œ HA VPN์˜ BGP ์„ธ์…˜์„ ๊ด€๋ฆฌํ•˜๋Š”์ง€ ์—ฌ๋ถ€๋ฅผ ๋‚˜ํƒ€๋‚ด๋Š” ๋ถˆ๋ฆฌ์–ธ ๋งค๊ฐœ๋ณ€์ˆ˜

  • NCC ๊ฒŒ์ดํŠธ์›จ์ด ์Šคํฌํฌ์™€ ์—ฐ๊ฒฐ๋œ Cloud Router๋ฅผ ๋งŒ๋“ค๋ ค๋ฉด ๋‹ค์Œ ์š”์ฒญ์„ ์‚ฌ์šฉํ•˜์„ธ์š”.

    bgp.advertiseMode: CUSTOM ํ”Œ๋ž˜๊ทธ๋Š” ๋ผ์šฐํ„ฐ ์ˆ˜์ค€ ๊ณต์ง€ ๋ชจ๋“œ๋ฅผ CUSTOM์œผ๋กœ ์„ค์ •ํ•˜๋ฏ€๋กœ ๋ผ์šฐํ„ฐ ์ˆ˜์ค€ ์ปค์Šคํ…€ ๊ฒฝ๋กœ ๊ณต์ง€๋ฅผ ์ง€์ •ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ๋ผ์šฐํ„ฐ ์ˆ˜์ค€ ๊ณต์ง€ ๋ชจ๋“œ๊ฐ€ ๊ฐœ๋ณ„ BGP ์„ธ์…˜ ๊ณต์ง€์— ๋ฏธ์น˜๋Š” ์˜ํ–ฅ์— ๊ด€ํ•œ ์ž์„ธํ•œ ๋‚ด์šฉ์€ ์œ ํšจํ•œ ๊ณต์ง€๋ฅผ ์ฐธ๊ณ ํ•˜์„ธ์š”.

         POST https://compute.googleapis.com/compute/v1/projects/PROJECT_ID/regions/REGION/routers
         {
           "name": "ROUTER_NAME",
           "ncc_gateway": "NCC_GATEWAY_URI",
           "bgp": {
             "asn": "ASN_NUMBER",
             "advertiseMode": CUSTOM,
             "advertisedIpRanges": [
                {
                   "range": CUSTOM_ADVERTISED_RANGE,
                   "description": CUSTOM_ADVERTISED_RANGE_DESCRIPTION
                }, ...
             ],
             "identifierRange": ROUTER_IDENTIFIER_RANGE,
             "keepaliveInterval": KEEPALIVE_TIMER
           }
         }
    

    ๋‹ค์Œ์„ ๋ฐ”๊ฟ‰๋‹ˆ๋‹ค.

    • ROUTER_NAME: Cloud Router์˜ ์ด๋ฆ„

    • PROJECT_ID: Cloud Router๊ฐ€ ํฌํ•จ๋œ ํ”„๋กœ์ ํŠธ์˜ ํ”„๋กœ์ ํŠธ ID

    • NCC_GATEWAY_URI: ๋ผ์šฐํ„ฐ์™€ ์—ฐ๊ฒฐ๋œ NCC ๊ฒŒ์ดํŠธ์›จ์ด์˜ ์ „์ฒด URI. URI ํ˜•์‹์€ ๋‹ค์Œ ํŒจํ„ด์„ ๋”ฐ๋ฆ…๋‹ˆ๋‹ค. https://networkconnectivity.googleapis.com/v1/projects/PROJECT_ID/locations/REGION/spokes/GATEWAY_SPOKE_NAME

    • REGION: Cloud Router๊ฐ€ ํฌํ•จ๋œ ๋ฆฌ์ „

    • ASN_NUMBER: ์˜จํ”„๋ ˆ๋ฏธ์Šค ๋„คํŠธ์›Œํฌ์—์„œ ์•„์ง ์‚ฌ์šฉํ•˜๊ณ  ์žˆ์ง€ ์•Š์€ ๋ชจ๋“  ๋น„๊ณต๊ฐœ ASN(64512-65534, 4200000000-4294967294)

      Cloud Router๋ฅผ ์‚ฌ์šฉํ•˜๋ ค๋ฉด ๋น„๊ณต๊ฐœ ASN๋ฅผ ์‚ฌ์šฉํ•ด์•ผ ํ•˜์ง€๋งŒ ์˜จํ”„๋ ˆ๋ฏธ์Šค ASN์€ ๊ณต๊ฐœ ๋˜๋Š” ๋น„๊ณต๊ฐœ์ผ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

    • CUSTOM_ADVERTISED_RANGE ๋ฐ CUSTOM_ADVERTISED_RANGE_DESCRIPTION: ๋ผ์šฐํ„ฐ ์ˆ˜์ค€ ๋งž์ถค ๊ฒฝ๋กœ ๊ณต์ง€๋ฅผ ์ง€์ •ํ•˜๋Š” ์‚ฌ์ „์˜ ํ‚ค

      bgp.advertisedIpRanges๋Š” ๊ฐ ๋งž์ถค ๊ฒฝ๋กœ ๊ด‘๊ณ  ์‚ฌ์ „์ด ํฌํ•จ๋œ ๋ชฉ๋ก์ž…๋‹ˆ๋‹ค. bgp.advertisedIpRanges์„ ์ง€์ •ํ•˜๋ ค๋ฉด bgp.advertiseMode: CUSTOM์ด ํ•„์š”ํ•ฉ๋‹ˆ๋‹ค. ๊ฐ CUSTOM_ADVERTISED_RANGE๋Š” CIDR ํ˜•์‹์˜ IP ์ฃผ์†Œ ๋ฒ”์œ„ ๋˜๋Š” ๊ฐœ๋ณ„ IP ์ฃผ์†Œ์ž…๋‹ˆ๋‹ค. ๊ฐœ๋ณ„ IPv4 ์ฃผ์†Œ๋Š” /32 ์„œ๋ธŒ๋„ท ๋งˆ์Šคํฌ๊ฐ€ ์žˆ๋Š” CIDR๋กœ ํ•ด์„๋˜๊ณ  ๊ฐœ๋ณ„ IPv6 ์ฃผ์†Œ๋Š” /128 ์„œ๋ธŒ๋„ท ๋งˆ์Šคํฌ๊ฐ€ ์žˆ๋Š” CIDR๋กœ ํ•ด์„๋ฉ๋‹ˆ๋‹ค. ์ปค์Šคํ…€ ๊ฒฝ๋กœ ๊ณต์ง€์˜ ์ตœ๋Œ€ ๊ฐœ์ˆ˜์— ๋Œ€ํ•œ ์ž์„ธํ•œ ๋‚ด์šฉ์€ ํ•œ๋„๋ฅผ ์ฐธ๊ณ ํ•˜์„ธ์š”. ๊ฐ CUSTOM_ADVERTISED_RANGE_DESCRIPTION์€ ๊ด‘๊ณ ๋ฅผ ์„ค๋ช…ํ•˜๋Š” ๋ฌธ์ž์—ด์ž…๋‹ˆ๋‹ค.

    • ROUTER_IDENTIFIER_RANGE: Cloud Router์˜ ๊ณ ์œ  ์‹๋ณ„์ž ์—ญํ• ์„ ํ•˜๋Š” IPv4 ์ฃผ์†Œ ๋ฒ”์œ„๋ฅผ ์ •์˜ํ•ฉ๋‹ˆ๋‹ค.

      ์ž์„ธํ•œ ๋‚ด์šฉ์€ BGP ์‹๋ณ„์ž ๋ฒ”์œ„ ๊ตฌ์„ฑ์„ ์ฐธ์กฐํ•˜์„ธ์š”.

    • KEEPALIVE_TIMER: BGP ์—ฐ๊ฒฐ ์œ ์ง€ ํƒ€์ด๋จธ๋ฅผ ์ •์˜ํ•˜๋Š” ์„ ํƒ์  ์‹œ๊ฐ„(์ดˆ)

      ์œ ํšจํ•œ ๊ฐ’์€ 20 ์ด์ƒ 60 ์ดํ•˜์ž…๋‹ˆ๋‹ค. bgp.keepaliveInterval๋ฅผ ์ƒ๋žตํ•˜๋ฉด Cloud Router๋Š” 20์ดˆ BGP ์—ฐ๊ฒฐ ์œ ์ง€ ํƒ€์ด๋จธ๋ฅผ ์‚ฌ์šฉํ•ฉ๋‹ˆ๋‹ค. ์ž์„ธํ•œ ๋‚ด์šฉ์€ ์—ฐ๊ฒฐ ์œ ์ง€ ํƒ€์ด๋จธ๋ฅผ ์ฐธ์กฐํ•˜์„ธ์š”.

๋„คํŠธ์›Œํฌ ์—ฐ๊ฒฐ ์ œํ’ˆ ์„ค์ •

VPC ๋„คํŠธ์›Œํฌ์˜ ๋ฆฌ์ „๊ณผ ์—ฐ๊ฒฐ๋œ Cloud Router๋Š” ๋‹ค์Œ ์—ฐ๊ฒฐ ์ œํ’ˆ์˜ BGP ์„ธ์…˜์„ ๊ด€๋ฆฌํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

NCC ๊ฒŒ์ดํŠธ์›จ์ด ์Šคํฌํฌ์™€ ์—ฐ๊ฒฐ๋œ Cloud Router๋Š” NCC ๊ฒŒ์ดํŠธ์›จ์ด ์Šคํฌํฌ์™€ ์—ฐ๊ฒฐ๋œ VLAN ์—ฐ๊ฒฐ์˜ BGP ์„ธ์…˜์„ ๊ด€๋ฆฌํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

Cloud Interconnect

Cloud Interconnect ๋ฐ Cloud Router๋ฅผ ์‚ฌ์šฉํ•˜์—ฌ ์˜จํ”„๋ ˆ๋ฏธ์Šค ๋„คํŠธ์›Œํฌ์— VPC ๋„คํŠธ์›Œํฌ๋ฅผ ์—ฐ๊ฒฐํ•˜๋ ค๋ฉด ๋จผ์ € Cloud Interconnect ์—ฐ๊ฒฐ์„ ํ”„๋กœ๋น„์ €๋‹ํ•ด์•ผ ํ•ฉ๋‹ˆ๋‹ค.

Cloud Interconnect์— ์—ฐ๊ฒฐํ•  ์ˆ˜ ์žˆ๋„๋ก VLAN ์—ฐ๊ฒฐ์„ ๋งŒ๋“ค ๋•Œ Cloud Router์™€ ํ•ด๋‹น BGP ์„ธ์…˜์„ ๊ตฌ์„ฑํ•ฉ๋‹ˆ๋‹ค. Dedicated Interconnect์˜ VLAN ์—ฐ๊ฒฐ ๋งŒ๋“ค๊ธฐ ๋ฐ Partner Interconnect์˜ VLAN ์—ฐ๊ฒฐ ๋งŒ๋“ค๊ธฐ๋ฅผ ์ฐธ์กฐํ•˜์„ธ์š”.

Cloud Interconnect๋ฅผ ํ†ตํ•œ HA VPN์„ ๋ฐฐํฌํ•˜๋Š” ๊ฒฝ์šฐ 2๊ฐœ์˜ Cloud Router๋ฅผ ๋ฐฐํฌํ•ด์•ผ ํ•ฉ๋‹ˆ๋‹ค.

  • VLAN ์—ฐ๊ฒฐ์— ๋Œ€ํ•ด ๊ตฌ์„ฑํ•˜๋Š” ํŠน์ˆ˜ํ•œ Cloud Interconnect์šฉ Cloud Router. ์ด Cloud Router๋Š” HA VPN ๊ฒŒ์ดํŠธ์›จ์ด์—์„œ ์•”ํ˜ธํ™”๋œ ํŠธ๋ž˜ํ”ฝ๋งŒ VLAN ์—ฐ๊ฒฐ๋กœ ์ „์†กํ•  ์ˆ˜ ์žˆ๋„๋ก ํ•ฉ๋‹ˆ๋‹ค.

  • HA VPN ํ„ฐ๋„์— ๊ตฌ์„ฑํ•˜๋Š” ์ผ๋ฐ˜ Cloud Router.

Cloud VPN

HA VPN ๋ฐ Cloud Router๋ฅผ ์‚ฌ์šฉํ•˜์—ฌ VPC ๋„คํŠธ์›Œํฌ๋ฅผ ์˜จํ”„๋ ˆ๋ฏธ์Šค ๋˜๋Š” ๋ฉ€ํ‹ฐ ํด๋ผ์šฐ๋“œ ๋„คํŠธ์›Œํฌ์— ์—ฐ๊ฒฐํ•˜๋ ค๋ฉด ํ”ผ์–ด VPN ๊ฒŒ์ดํŠธ์›จ์ด์— HA VPN ๊ฒŒ์ดํŠธ์›จ์ด ๋งŒ๋“ค๊ธฐ๋ฅผ ์ฐธ์กฐํ•˜์„ธ์š”.

HA VPN ๋ฐ Cloud Router๋ฅผ ์‚ฌ์šฉํ•˜์—ฌ VPC ๋„คํŠธ์›Œํฌ๋ฅผ ๋‹ค๋ฅธ VPC ๋„คํŠธ์›Œํฌ์— ์—ฐ๊ฒฐํ•˜๋ ค๋ฉด Google Cloud ๋„คํŠธ์›Œํฌ ์‚ฌ์ด์— HA VPN ๋งŒ๋“ค๊ธฐ๋ฅผ ์ฐธ์กฐํ•˜์„ธ์š”.

ํ”ผ์–ด ๋„คํŠธ์›Œํฌ์— ๋Œ€ํ•œ HA VPN ํ„ฐ๋„์„ ๋งŒ๋“ค ๋•Œ Cloud Router์™€ ํ•ด๋‹น BGP ์„ธ์…˜์„ ๊ตฌ์„ฑํ•ฉ๋‹ˆ๋‹ค.

๋ผ์šฐํ„ฐ ์–ดํ”Œ๋ผ์ด์–ธ์Šค

Network Connectivity Center ํ•˜์ด๋ธŒ๋ฆฌ๋“œ ์Šคํฌํฌ์˜ ๋ผ์šฐํ„ฐ ์–ดํ”Œ๋ผ์ด์–ธ์Šค๋ฅผ ์‚ฌ์šฉํ•˜์—ฌ VPC ๋„คํŠธ์›Œํฌ๋ฅผ ํ”ผ์–ด ๋„คํŠธ์›Œํฌ์— ์—ฐ๊ฒฐํ•˜๋ ค๋ฉด ๋ผ์šฐํ„ฐ ์–ดํ”Œ๋ผ์ด์–ธ์Šค ์ธ์Šคํ„ด์Šค ๋งŒ๋“ค๊ธฐ๋ฅผ ์ฐธ๊ณ ํ•˜์„ธ์š”.

NCC ๊ฒŒ์ดํŠธ์›จ์ด ์Šคํฌํฌ

NCC ๊ฒŒ์ดํŠธ์›จ์ด ์Šคํฌํฌ์—์„œ VLAN ์—ฐ๊ฒฐ์„ ๊ตฌ์„ฑํ•˜๋ ค๋ฉด NCC ๊ฒŒ์ดํŠธ์›จ์ด์— ํ•˜์ด๋ธŒ๋ฆฌ๋“œ ์—ฐ๊ฒฐ ์ถ”๊ฐ€๋ฅผ ์ฐธ๊ณ ํ•˜์„ธ์š”.

BGP ์„ธ์…˜ ์„ค์ •

Cloud Router๋กœ ๋„คํŠธ์›Œํฌ ์—ฐ๊ฒฐ ์ œํ’ˆ์„ ์„ค์ •ํ•  ๋•Œ Cloud Router์™€ ํ”ผ์–ด ๋„คํŠธ์›Œํฌ์˜ ๋ผ์šฐํ„ฐ ๊ฐ„์— ๊ฒฝ๊ณ„ ๊ฒŒ์ดํŠธ์›จ์ด ํ”„๋กœํ† ์ฝœ(BGP) ์„ธ์…˜์„ ์„ค์ •ํ•ฉ๋‹ˆ๋‹ค.

๊ฐ™์€ Cloud Router๋ฅผ ๋‹ค๋ฅธ ๋„คํŠธ์›Œํฌ ์—ฐ๊ฒฐ ์ œํ’ˆ๊ณผ ํ•จ๊ป˜ ์žฌ์‚ฌ์šฉํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ํ•˜์ง€๋งŒ ๊ฐ BGP ์„ธ์…˜์€ Cloud Router์™€ ํ•จ๊ป˜ ์‚ฌ์šฉํ•˜๋„๋ก ๊ตฌ์„ฑํ•œ ๋„คํŠธ์›Œํฌ ์—ฐ๊ฒฐ ์ œํ’ˆ(VLAN ์—ฐ๊ฒฐ, Cloud VPN ํ„ฐ๋„ ๋˜๋Š” ๋ผ์šฐํ„ฐ ์–ดํ”Œ๋ผ์ด์–ธ์Šค ์ธ์Šคํ„ด์Šค)์— ๋Œ€ํ•ด ๊ณ ์œ ํ•ฉ๋‹ˆ๋‹ค. ๋‹ค๋ฅธ ๋„คํŠธ์›Œํฌ ์—ฐ๊ฒฐ ์ œํ’ˆ์€ ๊ฐ™์€ BGP ์„ธ์…˜์„ ์‚ฌ์šฉํ•  ์ˆ˜ ์—†์Šต๋‹ˆ๋‹ค. ๊ฒฝ์šฐ์— ๋”ฐ๋ผ ์ถฉ๋ถ„ํ•œ ์ค‘๋ณต์„ฑ์„ ์–ป๊ธฐ ์œ„ํ•ด ๋„คํŠธ์›Œํฌ ์—ฐ๊ฒฐ ์ œํ’ˆ์˜ BGP ์„ธ์…˜์„ ์—ฌ๋Ÿฌ ๊ฐœ ์„ค์ •ํ•ด์•ผ ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค์–ด HA VPN์—์„œ Cloud Router๋ฅผ ์‚ฌ์šฉํ•  ๋•Œ BGP ์„ธ์…˜์„ ์—ฌ๋Ÿฌ ๊ฐœ ์„ค์ •ํ•ฉ๋‹ˆ๋‹ค.

Cloud Router์™€ ํ”ผ์–ด ๋„คํŠธ์›Œํฌ์˜ ๋ผ์šฐํ„ฐ ๊ฐ„์— BGP ์„ธ์…˜์„ ์„ค์ •ํ•˜๋ ค๋ฉด BGP ์„ธ์…˜ ์„ค์ •์„ ์ฐธ์กฐํ•˜์„ธ์š”.

๋‹ค์Œ ๋‹จ๊ณ„