Applicable Products
Hardware
- QHora-301W
- QHora-321
- QHora-322
- QMiro-201W
- QMiroPlus-201W
Software
Overview
When you add a QNAP router to QuWAN Orchestrator, it is essential to configure key settings such as Organization, Region, and Device Role. These settings play a critical role in defining your network topology, ensuring optimal network performance, and enabling secure communication across multiple locations.
Key Concepts
Organization
The organization setting allows multiple routers to form a unified network topology. Routers in the same organization can communicate securely via a mesh VPN, ensuring efficient service delivery and enhanced network reliability.
Region
Regions divide the organization’s network into distinct zones. Devices in the same region can establish VPN connections only with Hub devices within that region. This segmentation helps distribute network traffic and improve performance, particularly in large organizations.
Illustration of multiple regions within an organization's network
Device Roles
- Hub: A Hub device is the backbone of the network topology. It establishes VPN connections with other Hubs and facilitates traffic routing from Edge devices to other regions. Hubs are best suited for central or regional offices and must have a public IP address.
- Edge: Edge devices connect to a Hub in the same region via a VPN. Edge devices rely on Hubs to access services located in other regions, making them ideal for branch offices or smaller locations. Edge devices do not require a public IP address and can function behind NAT.
Illustration of hub and edge devices within an organization
Note
- Hubs must have a public IP address to ensure proper network operation.
- Regions help ensure compliance with local data protection regulations, so make sure to configure regions according to applicable regulations.
Further Reading
QuWAN and QuWAN Orchestrator Help - QuWAN device management hierarchy
适用产品
硬件
- QHora-301W
- QHora-321
- QHora-322
- QMiro-201W
- QMiroPlus-201W
软件
概述
当您将QNAP路由器添加到 QuWAN Orchestrator 时,配置关键设置如组织、区域和设备角色是至关重要的。这些设置在定义网络拓扑、确保最佳网络性能以及实现多个地点之间的安全通信方面起着关键作用。
关键概念
组织
组织设置允许多个路由器形成统一的网络拓扑。同一组织中的路由器可以通过网状VPN安全通信,确保高效的服务交付和增强的网络可靠性。
区域
区域将组织的网络划分为不同的区域。同一区域内的设备只能与该区域内的中心设备建立VPN连接。这种分段有助于分配网络流量并提高性能,特别是在大型组织中。
组织网络中多个区域的示意图
设备角色
- 中心:中心设备是网络拓扑的骨干。它与其他中心建立VPN连接,并促进端点设备到其他区域的流量路由。中心最适合中央或区域办公室,必须具有公共IP地址。
- 端点: 端点设备通过VPN连接到同一区域内的中心。端点设备依赖中心访问位于其他区域的服务,使其成为分支机构或较小地点的理想选择。端点设备不需要公共IP地址,可以在NAT后面运行。
组织内中心和端点设备的示意图
注意
- 中心必须具有公共IP地址以确保网络正常运行。
- 区域有助于确保符合当地的数据保护法规,因此请根据适用法规配置区域。
进一步阅读
QuWAN和 QuWAN Orchestrator 帮助 - QuWAN设备管理层次结构