在 Google Cloud Platform 创建应用连接器

Prev Next

注意:

请联系 feature-releases@catonetworks.com 以获取有关启用和使用此功能的更多信息。

您可以在 Google Cloud Platform (GCP) 中部署应用连接器,以为您的云环境中的私有应用程序提供安全访问。 应用连接器在您的云环境与 Cato 之间建立连接,并连接后,您将在 CMA 中分配它并将其关联到相关的应用连接器组。

了解GCP工作流中的应用连接器

以下是 GCP 中部署应用连接器的高级工作流程:

  • 在CMA中创建应用连接器对象

  • 从Google Marketplace部署Cato应用连接器

  • 为连接器分配应用程序

Create an App Connector

When you create an App Connector, you can choose the behavior for connecting to a preferred PoP in the Cato Cloud:

  • Disabled - the App Connector automatically connects to the best available PoP (default)

  • Enabled - Select the PoPs to which the connector attempts to connect to

When Preferred PoP is enabled, you can restrict an App Connector to only connect to the Preferred PoP Locations that you configure. In this case, the connector doesn't connect to a non-preferred PoP location despite any connectivity or performance issues that it is experiencing. When you use this option, you must define a primary and secondary PoP location for the App Connector.

Once the App Connector is created in the CMA, copy the serial number, as you will need to provide it when deploying the App Connector in your cloud environment.

To create an App Connector in the CMA:

  1. From the navigation menu, click Access > App Connector, and then click New.

  2. Enter the information in the General section, such as Connector Name and Country.

  3. Under Type, click Virtual.

  4. In the Connector Group section, select an existing App Connector group from the list or enter a name to create a new group.

  5. Under Preferred PoPs, select the behavior

    1. Disabled - the App Connector tries to connect to the best available PoP

    2. Enabled - Select the Primary and Secondary PoP locations that the connector tries to connect to

    3. Enabled and Only connect to the preferred PoPs - Only connect to the Primary or Secondary PoP location

  6. Click Apply.

在Google Cloud Platform中部署应用连接器

在Google Marketplace中使用自动化Cato向导创建应用连接器的虚拟资源并将其部署到GCP。 GCP应用连接器镜像在市场中公开可用。

要在GCP中部署应用连接器

  1. 从Google Cloud Marketplace中搜索Cato Networks应用连接器,然后点击 启动。

  2. 在 部署服务账户 下,确定您是希望在新账户还是现有账户中部署应用连接器。

    1. 如果选择现有帐户,请在 选择服务帐户 下拉列表中,点击相关账户。

  3. 输入资源和成本的以下设置:

    • 区域 - 应用连接器资源所关联的资源组

    • 区域 - 应用连接器资源的区域

    • 应用连接器VM名称 - 帮助识别连接器用途的描述性名称

    • Cato串行ID - 粘贴在CMA中创建连接器时复制的值。

  4. 为以下接口选择子网(最小子网地址空间为 /28):

    • MGMT子网 – 应用连接器和GCP API之间的管理通信

    • WAN 子网 - 应用连接器的外部 WAN 流量(互联网和 Cato 云)

    • LAN子网 - 与应用连接器连接的内部GCP资源和流量

  5. 点击 部署。

    应用连接器资源部署后,它会自动连接到 Cato 云,并检查是否需要升级到最新版本。 Cato 管理应用程序通知区域显示有关连接应用连接器状态的消息。

    您可以在访问 > 应用连接器页面中查看您的应用连接器。

为连接器分配应用程序

您可以从私有应用页面或应用连接器页面为连接器分配应用程序,使用 分配应用 链接。