Solution components
AWS Direct Connect requires you to either create your own dedicated connection to AWS, or work with an AWS Direct Connect Partner to create a hosted connection. This article provides guidance for using Megaport as an AWS Direct Connect Partner to facilitate hybrid and multiple use cases for connecting to Salesforce Hyperforce.
AWS Direct Connect
AWS Direct Connect establishes a private, dedicated network connection between on-premises data centers and AWS. This direct link helps organizations bypass the public internet and provides reliable and private communication with AWS resources.
Although Hyperforce runs on AWS infrastructure, using AWS Direct Connect to access it requires you to manage an AWS account for billing and configuration of the connection. Using AWS Direct Connect to connect to the Salesforce-managed Hyperforce AWS account isn't supported.
Hosted connection
A hosted
connection is a physical Ethernet connection that an AWS Direct Connect Partner
provisions on behalf of a user. The use cases and architectures covered in this
guide use a hosted connection with the AWS Direct Connect Partner, Megaport
Public virtual interface
The Hyperforce architecture requires access to the public IP address space of AWS resources from on-premises and multicloud locations. A public virtual interface (VIF) is used to connect your remote location to public AWS services and public IPs deployed on AWS. Using a private VIF to access Hyperforce is not supported.
Notes
-
Using a public VIF requires the use of unique public IPv4 addresses. You will need to provide your own IPv4 CIDR or request a
/31
CIDR from AWS Support. For more information, see the prerequisites for virtual interfaces in the AWS Direct Connect documentation. -
Using a public VIF to connect to AWS from your on-premises or multicloud environment changes the way traffic is routed from AWS public prefixes to your users. We recommend that you use a prefix filter (route map) to make sure that the accepted Amazon prefixes are limited to the Hyperforce infrastructure and any other necessary AWS resources. For more information, review public virtual interface prefix advertisement rules in the AWS Direct Connect documentation and Hyperforce External IPs
on the Salesforce website. -
The prefixes that are advertised by AWS Direct Connect must not be advertised beyond the network boundaries of your connection. For example, these prefixes must not be included in any public internet routing table. For information, review public virtual interface routing policies in the AWS Direct Connect documentation.
Salesforce
Salesforce is a customer relationship management (CRM) platform that's designed to help you sell, service, market, analyze, and connect with your customers.
Hyperforce
Salesforce Hyperforce
Salesforce Express Connect (SEC)
Salesforce Express Connect (SEC)
Notes
-
A limited number of Salesforce services still run in Salesforce-managed infrastructure. To maintain connectivity to all services in Salesforce-managed infrastructure and Hyperforce, users who require private network access to Salesforce must continue to run SEC along with AWS Direct Connect.
-
Salesforce and AWS do not sell SEC. If you require private network connectivity to Salesforce-managed infrastructure, you will need a SEC connection. This article covers establishing a new SEC connection to Salesforce by using Megaport
. -
SEC is not used for any data migration between Salesforce-managed infrastructure and Hyperforce. If you are migrating to Hyperforce, Salesforce facilitates data migrations in your organization on a private backbone. SEC is necessary for ongoing, private connectivity to Salesforce by users.
Megaport
Megaport
Megaport Port
Megaport
Port
Note
Your network device requires either 10 or 100 Gbps interfaces with 10GBASE-LR (duplex on single-mode optical fiber [SMOF]) or 100G-LR4 (duplex on SMOF) optical transceivers.
Megaport Virtual Edge (MVE)
Megaport Virtual Edge (MVE)
Note
Megaport doesn't sell third-party licenses and requires that you use a Bring Your Own License (BYOL) model.
Megaport Cloud Router (MCR)
Megaport Cloud Router (MCR)