At the egress of a large campus network, core switches are directly connected to upstream firewalls and connected to egress gateways through firewalls. Two firewalls set up a hot standby group to filter service. The AgentCore Gateway service provides secure and controlled egress traffic management for your applications, enabling seamless communication with resources within your Virtual Private Cloud (VPC). In a data center environment, which mimics an ISP BGP-free core, the ingress nodes tunnel the service traffic to an egress router that is also the AS boundary router. Egress peer traffic engineering allows a central controller to instruct an ingress router in a domain to direct the traffic towards. Now the users want to exchange traffic between those VLANs, and the obvious question is: which devices should do layer-2 forwarding (bridging) and which ones should do layer-3 forwarding (routing)? There are four typical designs you can use to solve that challenge: This blog post is an overview of. Configure specific application traffic to exit the cluster through an egress gateway.
[PDF Version]