AWS에서 앱 커넥터 생성하기

Prev Next

참고:

자세한 정보를 얻으려면  feature-releases@catonetworks.com 에 문의하십시오.

Amazon Web Services (AWS)에서 앱 커넥터를 배포하여 클라우드 환경 내의 비공개 애플리케이션에 대한 안전한 접근을 제공할 수 있습니다. 앱 커넥터가 클라우드 환경과 Cato 사이의 연결을 설정하며, 연결된 후 CMA에서 할당하여 관련된 앱 커넥터 그룹과 연결합니다.

앱 커넥터는 Cato vSocket 인프라 및 vSocket v26.0.23570부터 시작하는 이미지에 기반합니다. 이 소켓 버전에 액세스할 수 없는 경우, contact Support에 문의하여 계정에 제공하도록 요청하십시오.

AWS 앱 커넥터를 생성하고 관리하기 위해 Cato Terraform 모듈을 사용할 수도 있습니다.

AWS 워크플로우의 앱 커넥터 이해하기

다음은 AWS에서 앱 커넥터를 배포하기 위한 고급 워크플로우입니다:

  • CMA에서 앱 커넥터 객체를 생성합니다.

  • AWS Marketplace에서 Cato 앱 커넥터를 배포하세요

  • 커넥터에 앱을 할당하세요

Create an App Connector

When you create an App Connector, you can choose the behavior for connecting to a preferred PoP in the Cato Cloud:

  • Disabled - the App Connector automatically connects to the best available PoP (default)

  • Enabled - Select the PoPs to which the connector attempts to connect to

When Preferred PoP is enabled, you can restrict an App Connector to only connect to the Preferred PoP Locations that you configure. In this case, the connector doesn't connect to a non-preferred PoP location despite any connectivity or performance issues that it is experiencing. When you use this option, you must define a primary and secondary PoP location for the App Connector.

Once the App Connector is created in the CMA, copy the serial number, as you will need to provide it when deploying the App Connector in your cloud environment.

To create an App Connector in the CMA:

  1. From the navigation menu, click Access > App Connector, and then click New.

  2. Enter the information in the General section, such as Connector Name and Country.

  3. Under Type, click Virtual.

  4. In the Connector Group section, select an existing App Connector group from the list or enter a name to create a new group.

  5. Under Preferred PoPs, select the behavior

    1. Disabled - the App Connector tries to connect to the best available PoP

    2. Enabled - Select the Primary and Secondary PoP locations that the connector tries to connect to

    3. Enabled and Only connect to the preferred PoPs - Only connect to the Primary or Secondary PoP location

  6. Click Apply.

Amazon Web Services에 앱 커넥터 배포하기

Amazon Marketplace에서 자동화된 Cato 마법사를 사용하여 앱 커넥터의 가상 리소스를 생성하고 AWS에 배포하세요. Marketplace에서 앱 커넥터 이미지가 공개적으로 제공됩니다.

AWS에 앱 커넥터를 배포하려면

  1. AWS Marketplace에서 Cato Networks 앱 커넥터를 검색하고 실행을 클릭하십시오.

  2. 네트워크 구성에서 앱 커넥터를 새로운 VPC에 배포할지 기존 VPC에 배포할지를 결정하십시오.

    1. 기존 계정을 선택하면, 기존 VPC 드롭다운에서 관련 가상 네트워크를 클릭하십시오.

  3. 다음 인터페이스를 위한 서브넷을 선택하십시오 (최소 서브넷 주소 공간 /28):

    • MGMT 서브넷 - 앱 커넥터와 AWS API 사이의 관리 통신

    • WAN 서브넷 - 앱 커넥터의 외부 WAN 트래픽(인터넷 및 Cato Cloud)

    • LAN 서브넷 - 앱 커넥터에 연결된 내부 AWS 리소스와 트래픽

  4. 보안 구성에서:

    1. 기존 내부 보안 그룹 필드에서 내부 네트워크에서 오는 트래픽을 제어하는 보안 그룹을 정의하세요.

  5. 인스턴스 구성에서:

    1. 앱 커넥터가 실행될 인스턴스 유형을 선택하십시오

    2. MyKeyPair 필드에서 이 연결을 암호화하기 위해 생성한 키 쌍을 선택하십시오

    3. 일련 번호 필드에 앞서 CMA에서 복사한 값을 붙여 넣으십시오.

  6. 제출을 클릭합니다.

클라우드 액세스 > 앱 커넥터 페이지에서 앱 커넥터를 확인할 수 있습니다.

커넥터에 앱 할당

앱 커넥터 페이지 또는 비공개 앱 페이지에서 앱 할당 링크를 사용하여 커넥터에 앱을 할당합니다.