Overview
Scenario
With the development of hybrid clouds, there is also a growing need for companies to perform unified security management of on- and off-cloud. HSS supports the access and management of on-premises IDCs. Users are allowed to use the same security policies on different clouds, preventing the risks caused by inconsistent security policies.
Architecture
On-premises IDCs communicate with VPCs on the cloud through Direct Connect, and then connect to HSS through ECS agent, as shown in Figure 1.
- Direct Connect establishes a dedicated network connection that features high speed, low latency, stability, and security between your on-premises data center and Cloud VPC. Direct Connect allows you to maximize legacy IT facilities and leverage cloud services to build a flexible, scalable hybrid cloud compute environment.
- Elastic Cloud Server (ECS) is a scalable and on-demand cloud server. It helps you to efficiently set up reliable, secure, and flexible application environments, ensuring stable service running and improving O&M efficiency.
Figure 1 On-premises IDCs accessing HSS through direct connect and proxy servers

- Scenario
- Architecture