检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
A maximum of 200 DNAT rules can be added to a NAT gateway. For details, see the NAT Gateway documentation. You can view the information about the DNAT Service on the frontend. Do not modify the information on the frontend.
Possible Cause You have purchased only ELB but not NAT Gateway. Therefore, containers can be accessed only from the external network. Containers can access the external network after you purchase a NAT Gateway.
NAT Gateway NAT Gateway provides source network address translation (SNAT), which translates private IP addresses to a public IP address by binding an elastic IP address (EIP) to the gateway. You can set an SNAT rule to allow containers in a VPC to access the Internet.
If EIPs in the EIPPool are used by NAT or ELB, the management fails. The following example shows how to create a static EIPPool named eippool-demo2 and manage public IP addresses 10.246.173.254 and 10.246.172.3 in it.
Figure 2 Buying an EIP Buy a NAT gateway. For details, see Buy a Public NAT Gateway. Log in to the management console. Click in the upper left corner to select the desired region and project. Choose Service List > Networking > NAT Gateway.
Figure 2 Architecture CCI is deeply integrated with network services, for example Virtual Private Cloud (VPC), Elastic Load Balance (ELB), and NAT Gateway, as well as storage services such as Elastic Volume Service (EVS).
Access to the public network from a workload: You can configure source network address translation (SNAT) rules in NAT Gateway, so that containers can access the public network. "Workload Network Access" > "Accessing Public Networks from a Container" in the User Guide.
*:get View details about all NAT Gateway resources. nat:*:list List all NAT Gateway resources. kms:*:get Query key information. kms:*:list List all keys.
You can use the NAT Gateway service available on the public cloud platform. This service offers NAT for containers in a VPC, allowing these containers to access the Internet using an EIP.
Accessing Public Networks from a Container: Containers can access public networks by using SNAT rules, which are configured on the NAT Gateway. Figure 1 Network access diagram Parent topic: Workload Network Access