Design, Secure, and Optimize Cloud Networks with Advanced OCI Services, Real-World Use Cases, and Automation Strategies
Buch, Englisch, Format (B × H): 178 mm x 254 mm
ISBN: 979-8-8688-3421-9
Verlag: APRESS L.P.
Design, secure, and operate an enterprise-scale network on Oracle Cloud Infrastructure without first becoming a cloud generalist. The book assumes you already know what a subnet is, that you have configured a route table, and that you have brought up a BGP session at least once. What it
explains is how OCI implements those same ideas, where the OCI construct behaves differently from the equipment you are used to, and what that difference costs you when you get it wrong.
Every chapter is built on the same company. Meridian Logistics is a Rotterdam-based logistics operator that moves from one on-premises data centre to a two-region OCI footprint under PCI-DSS, and you follow that migration from the first Virtual Cloud Network (VCN) through to the final disaster recovery test. Along the way you build hub-and-spoke around a Dynamic Routing Gateway (DRG), connect Rotterdam over Site-to-Site VPN and FastConnect, extend the same DRG to AWS and Azure, run VMware workloads on Oracle Cloud VMware Solution (OCVS) and containers on OKE, and put DNS, load balancing, and a Web Application Firewall (WAF) in front of the customer portal. Every construct is built in the OCI Console, from the OCI CLI, and in Terraform, and every construct is verified before the chapter moves on.
The topology never resets. The same IP scheme and the same four engineers carry from Chapter 1 through to Chapter 27, so what you finish with is one reference architecture you can take into your own tenancy rather than a set of unrelated feature tours. Chapter 20 takes a single customer request and traces it through every plane the book has introduced, including route tables, Security Lists, Network Security Groups, the OCI Firewall, and Zero Trust Packet Routing, and then follows the response back out. Appendix A closes the book with seventy-one reference topologies that you look up by the business problem in the room.
Every chapter includes:
- Architecture explained before any configuration step
- Walkthroughs in the OCI Console, the OCI CLI, and Terraform
- A “Let’s say…” case study taken from the same running company
- A comparison table against the on-premises, AWS, and Azure equivalents
- Verification and troubleshooting steps for everything you build
By the end you will have a complete network design for an enterprise-scale OCI estate, the operational discipline to keep it healthy, and the vocabulary to defend it in a design review.
You Will:
· Build enterprise-grade OCI network architectures in the Console, from the CLI, and in Terraform, and verify each one before you move on
· Connect OCI to your data centre and to other clouds with Site-to-Site VPN, FastConnect, DRG route distributions, and Remote Peering Connections
· Compose Security Lists, Network Security Groups, the OCI Firewall, third-party firewalls, and Zero Trust Packet Routing into one working security posture
· Trace a live packet end to end and measure the network with VCN Flow Logs, OCI Monitoring, and OCI Logging
· Design and rehearse disaster recovery across OCI regions, between on-premises and OCI, and across OCVS and OpenShift
This book is for:
Network engineers, cloud architects, and infrastructure consultants who already understand on-premises networking at CCNA level or above and are now responsible for designing, building, or operating a network inside OCI. No prior cloud experience is assumed.
Zielgruppe
Professional/practitioner
Autoren/Hrsg.
Fachgebiete
Weitere Infos & Material
Introduction.- Chapter 1: The Evolution of Traditional Networking into Cloud Networking.- Chapter 2: Introduction to Cloud Networking Inside OCI.- Chapter 3: Common Network Architectures.- Chapter 4: Routing Inside OCI.- Chapter 5: Routing to Customer Data Centre Locations (On-Premises).- Chapter 6: Routing to Other Cloud Providers (Multicloud).- Chapter 7: Oracle Cloud VMware Solution (OCVS) and OCI Integration.- Chapter 8: OS-Level Firewall.- Chapter 9: Network Security Groups and Security Lists.- Chapter 10: OCI Firewall.- Chapter 11: Third-Party Firewalls.- Chapter 12: Zero Trust Packet Routing (ZPR).- Chapter 13: IP Addressing.- Chapter 14: Domain Name System (DNS).- Chapter 15: Load Balancing and Web Application Firewall (WAF).- Chapter 16: OCI Services.- Chapter 17: Cloud-Native Workloads.- Chapter 18: Monitoring the Network Inside OCI.- Chapter 19: Logging Inside OCI.- Chapter 20: Follow the Packet.- Chapter 21: Measuring Network Performance.- Chapter 22: Disaster Recovery Inside OCI.- Chapter 23: Disaster Recovery Between On-Premises and OCI.- Chapter 24: Disaster Recovery Between On-Premises and Virtualization Platforms (OCVS and OpenShift).- Chapter 25: OCI CLI.- Chapter 26: Terraform with OCI.- Chapter 27: Outro.- Appendix A: Reference Topology Catalogue.




