Smart Access Gateway (SAG) can use Cloud Enterprise Network (CEN) to access cloud services deployed in virtual private clouds (VPCs). This topic describes how to enable access to cloud services in VPCs.
Background information
Note By default, newly created transit routers are of Enterprise Edition, which supports
connections to VPCs. This topic describes how to enable access to cloud services by
using an Enterprise Edition transit router. For more information about how to enable
access to cloud services by using a Basic Edition transit router, see Enable access to a cloud service on a Basic Edition transit router.
Prerequisites
- The IP address or CIDR block of the cloud service is obtained.
For more information about the IP addresses or CIDR blocks used by OSS, see Internal endpoints of OSS buckets and VIP ranges.
- A CEN instance is created. For more information, see Create a CEN instance.
- The CCN instance that is associated with your on-premises network and VPC is connected to a transit router. For more information, see Create a VPC connection and Associate a CCN instance with a transit router.
- An inter-region connection is established between the transit router connected to
the VPC and the transit router connected to the CCN instance. For more information,
see Manage inter-region connections.
Note If both the CCN instance and the VPC are deployed in the Chinese mainland, an inter-region connection is automatically created after you connect the VPC and CCN instance to transit routers. By default, associated forwarding and route leaning are enabled between inter-region connections and the default route table of the transit router where the inter-region connections are created.