edit-icon download-icon

Access cloud services through physical connection

Last Updated: Apr 08, 2018

AnyTunnel VIP

AnyTunnel VIP provides a quick way for VPC to access cloud services. AnyTunnel VIP is a public VIP provided for VPC and can be accessed by all VPCs.

AnyTunnel VIP is 100.64.0.0/10, which is the same as that in a classic network. An IP belonging to 100.64.0.0/10, such as 100.64.1.1, can exist both in a class network and a VPC.

DNS, OSS, Log Service, and other cloud services are all using IPs belonging to 100.64.0.0/10. If you need to access these cloud services from the peer end of the leased line, namely your on-premises IDC, you must set the router interface pointing to VPC as the next hop of the route destined for 100.64.0.0/10 after you create the VBR. You also need to set the router interface pointing to Alibaba Cloud as the next hop of the route destined for 100.64.0.0/10 on the gateway device of the on-premises IDC. Because 100.64.0.0/10 is a reserved CIDR block of VPC, you need to split it into 100.64.0.0/11 and 100.96.0.0/11 and configure the two CIDR blocks on the VBR.

Configure routes on the VBR of the leased line

Set the router interface pointing to VPC as the next hop of the route destined for 100.64.0.0/11

  1. Log on to the Express Connect console.

  2. In the left-side navigation pane, select Virtual Border Router.

  3. On the My VBRs page, select the target VBR and click Manage.

  4. On the VBR Details page, click Add Route Entry and configure the route entry. The following configurations are used in this tutorial:

    • Destination CIDR Block: Enter 100.64.0.0/11 and 100.96.0.0/11 respectively.

    • Next Hop Direction: To VPC

    • Next Hop: Select the exit for data packets. In this tutorial, select the router interface on the VBR.

  5. Click OK to complete the configuration.

Set the router interface pointing to VPC as the next hop of the route destined for 100.96.0.0/11

  1. Go back to the VBR Details page, click Add Route Entry and configure the route entry. The following configurations are used in this tutorial:

    • Destination CIDR Block: 100.96.0.0/11

    • Next Hop Direction: To VPC

    • Next Hop: Select the exit for data packets. In this tutorial, select the router interface on the VBR.

  2. Click OK to complete the configuration.

Configure the route on the customer-side access device of the leased line

Add a static route pointing to Alibaba Cloud on the customer-side access device of the leased line:

ip route 100.64.0.0/10 {Alibaba Cloud-side IP address}

Thank you! We've received your feedback.