惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Forbes - Security
Forbes - Security
C
CERT Recently Published Vulnerability Notes
NISL@THU
NISL@THU
I
Intezer
S
Schneier on Security
L
Lohrmann on Cybersecurity
cs.CL updates on arXiv.org
cs.CL updates on arXiv.org
月光博客
月光博客
G
Google Developers Blog
S
Securelist
WordPress大学
WordPress大学
T
Tailwind CSS Blog
IT之家
IT之家
C
Cybersecurity and Infrastructure Security Agency CISA
A
Arctic Wolf
C
CXSECURITY Database RSS Feed - CXSecurity.com
J
Java Code Geeks
宝玉的分享
宝玉的分享
阮一峰的网络日志
阮一峰的网络日志
V
Vulnerabilities – Threatpost
P
Privacy & Cybersecurity Law Blog
博客园 - 聂微东
D
Darknet – Hacking Tools, Hacker News & Cyber Security
The Cloudflare Blog
P
Privacy International News Feed
The Hacker News
The Hacker News
L
LINUX DO - 热门话题
爱范儿
爱范儿
Last Week in AI
Last Week in AI
博客园 - 【当耐特】
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
美团技术团队
有赞技术团队
有赞技术团队
博客园 - 司徒正美
C
Cyber Attacks, Cyber Crime and Cyber Security
大猫的无限游戏
大猫的无限游戏
Recent Commits to openclaw:main
Recent Commits to openclaw:main
G
GRAHAM CLULEY
小众软件
小众软件
T
Tenable Blog
Jina AI
Jina AI
Simon Willison's Weblog
Simon Willison's Weblog
Security Latest
Security Latest
Application and Cybersecurity Blog
Application and Cybersecurity Blog
AWS News Blog
AWS News Blog
T
Troy Hunt's Blog
博客园 - Franky
量子位
博客园_首页
P
Proofpoint News Feed

Megaport Blog

A Guide to NAT Gateway A Guide to Cloud Storage How the Data Center Is Evolving in 2026 What to Expect When Attending Your First Network Operator Group (NOG) Nine Ways to Connect to Cloud Using Private Connectivity Migrate Your On-premises to the Cloud: A Step-by-Step Guide How to Lower Your Egress Fees in 2026 How to Achieve Data Sovereignty in Europe Cisco and Megaport: Redefining the Edge of Modern Networking How to Reduce Latency in Your Multicloud Environment Introducing Megaport High-Speed Cross-Cloud Encryption Are Businesses Leaving the Cloud? Using Meraki and Megaport Virtual Edge for Multicloud Networking Equinix Metal® is Going Away: Here’s What You Can Do Introducing Megaport On-ramp as a Service Megaport’s Full Solution Portfolio Is Coming to India New Bare-metal GPU Instance Now Available with NVIDIA RTX Pro 6000 A Look Back at 2025: Megaport's Biggest Updates Megaport Expands Into India With Strategic Acquisition of Extreme IX Your 2026 Predictions From AWS re:Invent 2025 What’s Next for NaaS? Top Trends for 2026 What is IPsec? When to Move From Public Internet to Private Connectivity Megaport and Latitude.sh: Bringing Compute and Connectivity Together How to Improve Your Microsoft ExpressRoute Resilience with Megaport Connectivity Comparing Ways to Connect to AWS What is API-First Networking? The Hidden Cost of Running Cloud-Hosted SD-WAN for IaaS How to Overcome NaaS Integration Challenges Introducing SCION with Anapaya and Megaport How You Can Use Network as a Service (NaaS) to Future-Proof Your Network Introducing 400G Ports All the As-a-services, Compared Introducing Megaport IPsec Tunnels High Score: Megaport Hits 1,000 Locations A Guide to Colocation Data Centers Maximizing Peering Through Flow Analysis How to Build Resilient Networks for AI Production Workloads Introducing Packet Filtering on Megaport Cloud Router Building Resilient Government IT: Strategies for Secure, Compliant, and Scalable Connectivity Future-Proofing Government IT: Balancing Innovation, Security, and Sovereignty in a Changing World Telstra Programmable Network Is Being Discontinued. Here’s How to Migrate The Future of WAN Design Depends on Network as a Service (NaaS) Cisco Webex Edge Connect Launches on Megaport Voice and Video Exchange How to Prepare for APRA CPS 230 Regulations Comparing the SD-WAN Licensing Needs of Major Vendors A Guide to Improving Network Performance How Latitude.sh, Wasabi, and Megaport Unlock Cost-Effective Multicloud Four Ways to Connect Your Clouds SD-WAN and MPLS: Weighing the Similarities, Differences, and Benefits What is Network as a Service (NaaS)? How to Arrange Bilateral Peering Sessions Comparing Major SD-WAN Vendors Software Defined Networking in the Healthcare Industry Deploying A Global Network in Minutes With Megaport AWS Direct Connect Gateway (DGW) Data Transfer Outbound Rules Bilateral and Multilateral Peering: What’s the Difference? Multi-Region SD-WAN: Why Megaport SDCI is the Right Choice Microsoft Azure is Going Secure by Default. Are You Ready? Building Production-Ready AI Infrastructure: How Megaport and Vultr Are Solving the Enterprise Challenge Introducing Megaport NAT Gateway A Guide to AWS Security Tools How to Deploy Amazon Bedrock Using AWS Direct Connect and Megaport Azure Private Link, Explained Introducing 100G MCRs Your Questions Answered on Simplifying Hybrid and Multicloud Network Connectivity How to Fix Poor AWS Latency A Look Back at 2024: Megaport’s Biggest Updates Your 2025 Predictions From AWS re:Invent 2024 Six Ways to Get a More Resilient Network in 2025 Multicloud Security: Challenges and Solutions The Real Cost of High Network Latency Why Brazil is Your Key to Unlocking Business Growth in Latin America Why You Need Integrated Network Security Six Key Differences Between Major Cloud Providers How to Automate Your Megaport Infrastructure With APIs Why Italy is Europe’s Next Cloud Expansion Hotspot How to Lower Your Cloud Costs Peering: How Local Is Local? Introducing Megaport AI Exchange Two Scenarios for Hybrid Multicloud Deployment With IBM Cloud and Microsoft Azure How to Connect Equinix and Digital Realty Megaport Enables Microsoft Azure ExpressRoute Metro for More Resilient Network Connectivity Executives, Here’s What Your Network Team Wants You to Know Easy Ways to Interconnect Your Network The Role of the Data Center in Your Network 100G VXC Expansion: Now Available From 597 Data Centers Worldwide Top 10 How-To Guides To Improve Your Network Comparing Encryption in Transit Options A Sustainable Business Strategy Starts With Your Network Solutions to Common API Issues With Megaport Transforming Financial Connectivity: Introducing Megaport Financial Services Exchange (FSX) Megaport Enhancing Connectivity in Adelaide Megaport’s Latest Portal Features and Functionalities Automate Your Network Deployments With The New Megaport Terraform Provider A Recap of the Megaport World Tour 2024 Top 5 Cloud and Networking Announcements From Cisco Live 2024 Megaport Enhancing Connectivity in Canberra AWS PrivateLink, Explained How Megaport and Wasabi Are Simplifying Cloud Storage
Understanding Private Connection SLAs for AWS, Microsoft Azure, and Google Cloud
Megaport · 2020-10-15 · via Megaport Blog

A thorough understanding of cloud service provider SLAs is necessary to make solid deployment decisions.

High availability solutions are a top priority when deploying network connectivity to resources critical to business success. With cloud deployments expected to continue to grow rapidly, understanding service-level agreements (SLAs) provided by the CSPs can help guide deployment decisions.

It’s not made easier when each major CSP — AWS (Direct Connect), Microsoft Azure (ExpressRoute), Google Cloud (Interconnect) — take different approaches to their SLAs. While Microsoft, for example, provides customers the ability to support an SLA with each ExpressRoute provisioned, Google and AWS have options for customers to build an SLA into their deployments by adding connections.

Let’s take a look at how each of these three major CSPs handle their SLAs.

Microsoft Azure ExpressRoute

Microsoft offers a 99.95% uptime SLA with each ExpressRoute deployment. Azure is the only cloud provider to offer an SLA as part of the standard offering. A single ExpressRoute provides customers the ability to connect to two Microsoft Enterprise Edge Routers (MSEE) at the ExpressRoute peer location provisioned, giving the customer the ability to connect to redundant devices with redundant Layer 2 (Ethernet) connections. Customers must set up a BGP peer (Layer 3) on each MSEE router to meet SLA requirements. Both peers are active and customers can control routing. Customers can choose to provision a single peer, but will then not be covered by the Azure SLA.

The Microsoft SLA applies to the Microsoft network extending from the Azure edge / peer location MSEE router across the Microsoft network. Customers can choose to terminate both connections / peers on a single customer device or can split the connections on two customer devices. As long as both peers are established with each MSEE, the Microsoft SLA will apply. Additional ExpressRoute SLA details can be found at ExpressRoute SLA.

Example Configurations:

Customer Single Device Example:

Customer single device example

Customer Dual Device Example:

Customer dual device example

Google Cloud Interconnect

Google offers customers multiple SLAs via their private connection offering. Customers can provision a 99.9% or 99.99% uptime SLA configuration, which is supported by both Dedicated and Partner Interconnect models. The SLA is not offered by default with the standard offering, as it is with ExpressRoute. Customers will need to provision multiple GCP Interconnects to support the SLA. For more information, see Google SLA.

Google Cloud SLA 99.9%

To receive a 99.9% SLA with Google, a customer must provision two VLAN (Interconnect) attachments. VLAN attachments are required to connect through Zone 1 and Zone 2 in the same Metro Edge Availability Domain (see references at end of blog for service definitions). Customers will set up BGP peering between customer devices and Google Cloud Routers deployed in the same VPC and GCP region.

Example of Google Cloud 99.9% SLA:

Shown below is a single customer device. As with Azure, customers can choose a single or dual device deployment on the customer network. SLA applies to the GCP network.

Single customer device

Google Cloud SLA 99.99%

To receive a 99.9% uptime SLA with Google, Interconnect customers are required to provision four VLAN attachments. As with the 99.9% solution, one set of VLAN attachments will be provisioned in a single Metro Edge Availability Domain via Zone 1 and Zone 2. The 99.99% solution requires an additional two VLAN attachments to be provisioned in a second Metro Edge Availability Domain via Zone 1 and Zone 2. Four Google Cloud Routers will also be required; two will be deployed in Region 1 and two will be deployed in the second region. All need to be deployed in the same VPC. Global Dynamic Routing needs to be enabled to route via Google Cloud Routers in each region.

Example of Google Cloud 99.9% SLA:

Shown is a single customer device in two data centres. Customers can deploy to multiple data centres and routing devices on the customer network. SLA applies to the GCP network.

Single customer device in two data centers

AWS Direct Connect

AWS provides a limited set of options to support Direct Connect SLAs. AWS is different from Microsoft and Google AWS as SLAs are supported only via its Dedicated model in which the customer owns the physical connection to AWS. AWS does not provide an SLA via partner models, but does provide guidance on setting up HA solutions. For details, see AWS Direct Connect Resiliency Recommendations.

AWS SLA 99.9%

To support the AWS Direct Connect 99.9% uptime SLA, customers are required to provision virtual interfaces on Dedicated Connections at a minimum of two Direct Connect locations. One of those connections must be completed at the Direct Connect location associated with the region in which the customer workload is located. Customers must also have an enterprise support plan. (Note: Minimum cost for the enterprise support plan is $15,000 per month. See Enterprise Support Cost for details.

For private endpoints, workloads must also be provisioned in two or more Availability Zones.

AWS SLA 99.99%

The 99.99% SLA incorporates all of the 99.9% SLA components, but adds some additional requirements, specifically two additional virtual interfaces and Direct Connects. A minimum of two Direct Connect locations are required. If a customer has two connections in one location, the customer must make sure each connects to a unique AWS endpoint (router). Customers also must consult with an AWS solutions architect to provide AWS enterprise support with a list of the included resource IDs that meet the minimum configuration requirements to qualify for service credits. You can view AWS SLA guidance at AWS Direct Connect Service Level Agreement.

Building solutions that support both HA and SLA-backed private CSP connectivity can be a challenge. Megaport specialises in guiding you in this journey. Our Software Defined Network (SDN) has been built to support CSP-recommended HA and SLA solutions, removing the complexity of deploying connectivity. For more information and guidance on Megaport, please visit Megaport’s website.

Reference Definitions:

Google

VLAN Attachments: Also known as an interconnect attachment, a VLAN attachment is a logical connection between your on-premises network and a single region in your VPC network.

Cloud Router: Cloud Router dynamically exchanges routes between your VPC network and your on-premises network using Border Gateway Protocol (BGP). Before you can create a VLAN attachment, you must create or use an existing Cloud Router in the VPC network that you want to connect to. You then associate the attachment with this Cloud Router. The Cloud Router creates a BGP session that connects to your on-premises (peer) router.

Metropolitan Area: A metropolitan area (metro) is the city where a colocation facility is located.

Availability Domain: Each metropolitan area has at least two zones called edge availability domains. These domains provide isolation during scheduled maintenance, meaning that two domains in the same metro won’t be down for maintenance at the same time. This isolation is important when you’re building for redundancy.