# Connect with IBM Cloud Direct Link (2.0)

<!-- -->

The Equinix Fabric customers can use IBM Cloud™ Direct Link to connect on-premises resources to cloud resources.

Equinix Fabric IBM Cloud Direct Link is ideal for working with IBM Cloud when there are:

* IBM Cloud deployments on VPC
* Hybrid workloads
* Cross-provider workloads
* Large or frequent data transfers
* Private or regulated workloads

IBM Cloud Direct Link Connect is more suitable than IBM Cloud Direct Link Dedicated when you need:

* Quicker connectivity for mission-critical workloads
* A high degree of granularity and flexibility in the connection bandwidth
* Connections at speeds of at 5 Gbps or less
* Diverse ports in a point of presence (PoP) are available

## Technical Considerations[​](#technical-considerations "Direct link to Technical Considerations")

Review these technical considerations before deployment.

### Architecture[​](#architecture "Direct link to Architecture")

In this diagram, the *Service Provider Network* refers to Equinix Fabric.

![](/ja/assets/images/Fabric-IBM-arch-diagram-f611a1dc66108073083437ef116de4fc.png)

### IP Addresses[​](#ip-addresses "Direct link to IP Addresses")

If you use Classic IaaS, be aware that IBM infrastructure uses the 10.x.x.x network. You can't overlap your on-premises hosts within IBM Cloud or with the IBM Cloud services networks 10.0.0.0/14, 10.198.0.0/15, and 10.200.0.0/14. See [Direct Link prerequisites](https://cloud.ibm.com/docs/dl?topic=dl-ibm-cloud-dl-prerequisites) (item 7) for more information.

As stated in [IBM Cloud Direct Link on Classic BGP](https://cloud.ibm.com/docs/direct-link?topic=direct-link-configure-ibm-cloud-direct-link#configuring-bgp) configuration instructions, the following networks are filtered out and can't be accepted: 10.0.0.0/14, 10.198.0.0/15, 10.200.0.0/14, 169.254.0.0/16, and 224.0.0.0/4.

### BGP Interconnection Network[​](#bgp-interconnection-network "Direct link to BGP Interconnection Network")

Before deployment, verify that the parameters fulfill the IBM Cloud limitations.

The BGP peering interconnection subnet can be automatically or manually assigned when defining the IBM Cloud Direct Link Connect parameters.

If you choose auto-select IP, a /30 subnet is automatically assigned in 169.254.0.0/16. IBM Cloud uses the first IP, and the on-premises router uses the second IP.

If you choose manual-select IP, you can assign your interconnection CIDR in these ranges:

* 10.254.0.0/16
* 169.254.0.0/16
* 172.16.0.0/12
* 192.168.0.0/16
* Any public IP addresses

### Autonomous System Number (ASN)[​](#autonomous-system-number-asn "Direct link to Autonomous System Number (ASN)")

Both private and public ASN can be used for the on-premises router. The default ASN is 64999. The following ASNs are not allowed:

* 0
* 13884
* 36351
* 64512–64513
* 65100
* 65201‍–‍65234
* 65402‍–‍65433
* 65500
* 4201065000‍–‍4201065999

### Virtual Routing and Forwarding (VRF)[​](#virtual-routing-and-forwarding-vrf "Direct link to Virtual Routing and Forwarding (VRF)")

IBM Cloud Direct Link does not require a global VRF unless connection to the IBM Cloud Classic environment is required. For more information, see these IBM documents:

* [Enabling VRF and service endpoints](https://cloud.ibm.com/docs/account?topic=account-vrf-service-endpoint)
* [Connect Direct Link to VPC without using the classic infrastructure](https://cloud.ibm.com/docs/dl?topic=dl-faqs#connect-wo-using-classic)

If you do need to migrate your account to VRF before deployment, open a support ticket. For instructions, see [Converting to virtual routing and forwarding](https://cloud.ibm.com/docs/direct-link?topic=direct-link-what-happens-during-the-account-conversion-process).

メモ

Migrating to a VRF requires a short outage window (up to 30 minutes). During this time, the backend network VLANs lose mutual connectivity while they are moved to the VRF.

To verify if your account is migrated to VRF, go to the IBM Cloud console. Select Manage > Account Settings > Virtual Routing and Forwarding. The VRF setting displays Yes or No.

### Redundancy for IBM Direct Link 2.0[​](#redundancy-for-ibm-direct-link-20 "Direct link to Redundancy for IBM Direct Link 2.0")

Although BM Direct Link service is designed with high availability using multi-zone regions (MZRs), your connection is linked to a specific location. Therefore, you must design and deploy redundancy or disaster recovery architectures.

* As described in [Models for diversity and redundancy in Direct Link](https://cloud.ibm.com/docs/dl?topic=dl-models-for-diversity-and-redundancy-in-direct-link), Direct Link is not a redundant service at the cross-connect router (XCR), so it's your responsibility to create redundancy through your BGP schemas.
* Also, as described in [Direct Link prerequisites](https://cloud.ibm.com/docs/dl?topic=dl-ibm-cloud-dl-prerequisites) (item 4), for redundancy through the Direct Link service, you can purchase two separate Direct link connections in a single IBM Cloud network PoP on two separate routers, or you can order two single connections into two geographically diverse Direct Link PoP locations.

Three models can be used to achieve redundancy:

* Configure 2x IBM Direct Link Connect gateways over diverse ports and XCR in the same market (location and metro). If all the Cloud resources are deployed in that market, only Local Routing is required.

* Configure 2x IBM Direct Link Connect gateways over diverse POPs in the same market. If all the Cloud resources are deployed in that market, only Local Routing is required.

  Using Equinix Fabric, this model can be achieved in the Tokyo market (POPs: Tokyo 3 and Osaka 1) and in the Dallas market (POPs: Chicago 1 and Dallas 3).

* Configure 2x IBM Direct Link Connect gateways over diverse POPs and diverse markets. This model requires global routing.

See [Models for diversity and redundancy in Direct Link](https://cloud.ibm.com/docs/dl?topic=dl-models-for-diversity-and-redundancy-in-direct-link) for the diagrams for each model. More information is also available at [High availability and disaster recovery for Direct Link](https://cloud.ibm.com/docs/dl?topic=dl-ha-dr).

## Prerequisites[​](#prerequisites "Direct link to Prerequisites")

Connection to IBM Cloud Direct Link Connect with Equinix Fabric requires three phases:

1. Create the virtual connection on the Equinix Customer Portal to the IBM Cloud Direct Link 2.0 profile.
2. Accept and finish configuration of the Direct Link Connect gateway on the IBM Cloud console.
3. Configure the BGP session on your on-premises or Network Edge router.

Additional instructions are available on IBM's [Equinix ordering considerations](https://cloud.ibm.com/docs/dl?topic=dl-equinix).

This procedure is focused on the interconnection between an on-premises router and an IBM Cloud VPC. The following elements will be deployed:

* IBM Cloud Direct Link 2.0 Connect gateway
* Virtual connection from the IBM Cloud Direct Link gateway to the VPC
* Virtual connection from the on-premises router to IBM Cloud Direct Link 2.0

A Network Edge virtual device is the on-premises router used in examples and images.

![](/ja/assets/images/Fabric-IBM-NE-arch-f5e3904d78430025c9dc45a76d6f8025.png)

* This procedure assumes that a VPC is deployed and configured in IBM Cloud. In this example, the VPC is deployed in Frankfurt and has three subnets. A virtual server is running in one of the subnets (only the routes to subnets with virtual servers running are advertised).

  ![](/ja/assets/images/Fabric-IBM-VPC-details-d1c962092bf7a89abe31366041d79fa7.png)

  ![](/ja/assets/images/Fabric-IBM-VPC-subnets-8552897a67f2ccb5107af83ef14237e9.png)

* To configure the Direct Link connection, the 32-character IBM account ID is required. From the IBM Cloud console, select Manage Account > Account Settings.

  ![](/ja/assets/images/Fabric-IBM-id-bcd2231af143c72da550d127035136e6.png)

## Connect to IBM Cloud through Direct Link in Equinix Fabric[​](#connect-to-ibm-cloud-through-direct-link-in-equinix-fabric "Direct link to Connect to IBM Cloud through Direct Link in Equinix Fabric")

1. Log in to the [Customer Portal](https://portal.equinix.com/fabric) > *Fabric Dashboard*.

2. Use the Context Switcher and select the project under which you want to create the connection.

3. From the *Connections* menu, select **Create Connection**.

4. In the *Frequent Connections* section, click **IBM Cloud**.

5. On the *IBM Cloud Direct Link 2* card, click **Create Connection**.

   ![](/ja/assets/images/Fabric-IBM-DL2-card-a47297c97ec8025898eab28d922825fa.png)

6. In the *Origin* section, click **Port** or **Virtual Device**.

   ![](/ja/assets/images/Fabric-IBM-connect-e6906ec3b5bac022bf53ea052aca23c3.png)

7. Select a Location.

8. Select a port or Virtual Device Type.

9. Select a Destination.

10. Click **Next**.

11. In the *Connection Information* section:

    * Virtual Connection Name – Enter a name for your virtual connection.
    * IBM Cloud Account – Enter your IBM Cloud Account ID. To locate this number, see the [Prerequisites](#prerequisites).
    * Purchase Order Number – Enter your PO number.
    * ASN – Enter the ASN of your on-premises router.
    * CER IPv4 CIDR and IBM IPv4 CIDR – These addresses are not required, because the IBM Cloud can supply them automatically. But if you provide your own addresses, you must complete both fields.

12. Select a Connection Speed.

13. Click **Next**.

Review your order, then click **Submit Order**. A Success message is displayed, and you will receive a confirmation email.

You can view your newly created virtual connection for Direct Link by going to *Connections*. Click the connection name to display more details. The *Status* displays `Pending Approval`, and the *Provider Status* displays `Not Available`.

The IBM Special Network Services (SNS) team receives your request and approves the connection. The SLA for the approval is 24 hours. If this is not acceptable, you can open a [support ticket](https://cloud.ibm.com/login?redirect=%2Funifiedsupport%2Fcases%2Fform). For more information, see [Equinix ordering considerations](https://cloud.ibm.com/docs/dl?topic=dl-equinix).

## Accept the IBM Direct Link Connection and Continue Configuration[​](#accept-the-ibmdirect-link-connection-and-continue-configuration "Direct link to Accept the IBM Direct Link Connection and Continue Configuration")

1. Log in to the [IBM Cloud console](https://cloud.ibm.com/login).

2. Go to *Interconnectivity* and select *Direct Link*.

   The new Direct Link gateway status is `pending approval`.

3. To view more details in a drop-down, click the new Direct Link name that matches the new virtual connection.

4. Click **Review**. Configuration details are displayed.

   ![](/ja/assets/images/Fabric-IBM-review-config-182b8afda47893188bddcea24aacbf93.png)

5. Click **Accept**.

6. In the *Finalize creation* form:

   ![](/ja/assets/images/Fabric-IBM-finalize-creation-836b24154bf5052cb71e9e4afa4147b6.png)

   1. Choose a group from the *Resource group* drop-down list.
   2. Select your choices in the Gateway, Billing, and other sections, or leave the default settings.
   3. Review and select the Direct Link Connect prerequisites.
   4. Click **Create**.

7. Click the name of the new Direct Link gateway. The details are displayed.

8. Once it is provisioned, verify that the BGP session is configured but idle, and scroll down to *Add connection*.

9. Click **Add** to add a virtual connection from your new Direct Link to your VPC.

   ![](/ja/assets/images/Fabric-IBM-new-connect-bce90716bd1abaec564ae2e5e3820797.png)

In the Equinix Customer portal, the Equinix Status and the Provider Status display Provisioned for the new connection.

## Configure the BGP Connection[​](#configure-the-bgp-connection "Direct link to Configure the BGP Connection")

1. Configure the BGP session in your on-premises router. The necessary data can be found in the Direct Link Connect Details if it was auto-assigned.

   ![](/ja/assets/images/Fabric-IBM-connect-details-c38f301c8715f411130aabf68b9d0182.png)

   Use the data to configure the on-premises router (for example, the Network Edge virtual device).

   ![](/ja/assets/images/Fabric-IBM-primary-bgp-info-161f313ab2f11fce9573587af0989aec.png)

2. Verify that the BGP session is up in the Equinix Customer Portal. The *Provisioning Status* should display `Provisioned`, and the *BGP State* should display `Established`.

3. Verify that the BGP session is up in the IBM Cloud console. In the *IBM Cloud Direct Link Details*, the *BGP Status* should change from `Active` to `Connect`, then to `Established`.

## Increase or Decrease Connection Bandwidth[​](#increase-or-decrease-connection-bandwidth "Direct link to Increase or Decrease Connection Bandwidth")

You can increase or decrease the bandwidth or your connection to IBM Direct Link without deleting or recreating the connection. To change to bandwidth of your connection:

1. In the [Equinix Customer portal](https://portal.equinix.com/fabric/dashboard), select your connection in the *Connections Inventory*.

2. In the *Overview* section, scroll to *Bandwidth* and click **Change**.

   ![](/ja/assets/images/Fabric-IBM-change-band-3dabf8443ccd4ba96e89e306164d14bb.png)

3. Click the *Bandwidth* drop-down to select a new speed.

   ![](/ja/assets/images/Fabric-IBM-band-drop-af9db9454167197e1524e3af9c9429ab.png)

4. Select *I am authorized to make this change and accept the new monthly charge*.

   ![](/ja/assets/images/Fabric-IBM-authorize-c60870e7134ebb995850ee47e11e2c7b.png)

5. Click **Confirm**.

Return to the IBM Cloud console to approve the bandwidth change. Once the change is approved on the IBM console, Equinix Fabric will provision the new bandwidth and start charging for the updated bandwidth tier.

## Troubleshooting[​](#troubleshooting "Direct link to Troubleshooting")

Currently there is no capability to connect to the IBM router to check the BGP session behavior, routes learned, or routes advertised. If that information is required, open a support ticket (team: ACS-Network) to request it.

Troubleshooting can be done by SSH into the on-premises or Network Edge router by verifying the connection, BGP session, and routes toward the IBM neighbor.

The example below describes a typical troubleshooting session. In this example, the VRF cloud must be used for the Network Edge router.

* Show the route table and verify that you can reach the BGP peer and the VPC on IBM Cloud:

```
show ip route vrf cloud

>

Routing Table: cloud



Codes: L - local, C - connected, S - static, R - RIP, M - mobile, B - BGP



D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area



(...)



10.0.0.0/8 is variably subnetted, 2 subnets, 2 masks



C     10.0.0.0/30 is directly connected, GigabitEthernet4



L     10.0.0.1/32 is directly connected, GigabitEthernet4



B     192.168.200.0/24 [20/0] via 169.254.0.2, 00:54:13
```

In this case, everything looks fine. If not, BGP session and neighbors could be checked:

```
show bgp vrf cloud neighbors

>

BGP neighbor is 10.0.0.2, vrf cloud, remote AS 13884, external link



BGP version 4, remote router ID 10.0.0.2



(...)
```

Verify that you can reach the BGP peer (the IBM Cloud router):

```
ping vrf cloud 10.0.0.2

>

Type escape sequence to abort.



Sending 5, 100-byte ICMP Echos to 10.0.0.2, timeout is 2 seconds:



!!!!!



Success rate is 100 percent (5/5), round-trip min/avg/max = 1/1/2 ms
```

List the routes that the router is learning from the BGP peer:

```
show bgp vrf cloud neighbor 10.0.0.2 routes

>

% Command accepted but obsolete, unreleased or unsupported; see documentation.



BGP table version is 2, local router ID is 89.202.19.34



Status codes: s suppressed, d damped, h history, \* valid, > best, i - internal,



(...)



Origin codes: i - IGP, e - EGP, ? - incomplete



(...)



Network Next Hop Metric LocPrf Weight Path



Route Distinguisher: 65000:17137 (default for vrf cloud)



\*> 192.168.200.0 10.0.0.2 0 13884 36351 i



Total number of prefixes 1
```

IBM Cloud does not advertise the prefixes associated with a subnet unless services are deployed and running in it. In this example, the route 192.168.200.0/24 via 169.254.0.2 is received because a virtual server is running in the subnet. If there is no server or if the server is stopped, the route is not advertised. Therefore, the other subnet’s prefixes (192.168.201.0/24, 192.168.202.0/24) are not received.

## Remove the IBM Cloud Direct Link Connection[​](#remove-the-ibm-cloud-direct-link-connection "Direct link to Remove the IBM Cloud Direct Link Connection")

To remove the created connection, delete the resources created in both the IBM Cloud console and the Equinix Customer portal. The connections must first be deleted in the IBM Cloud console, and then in Equinix Fabric.

### Delete the IBM Cloud Direct Link Connect on the IBM Cloud Console[​](#delete-the-ibm-cloud-direct-link-connect-on-the-ibm-cloud-console "Direct link to Delete the IBM Cloud Direct Link Connect on the IBM Cloud Console")

1. Go to the IBM Cloud console, click Interconnectivity, and select Direct Link.
2. Click the Direct Link name to display the Direct Link details.
3. Delete all the virtual connections.
4. In the Actions menu, delete the Direct Link.

### Delete the Connection on the Equinix Customer Portal[​](#delete-the-connection-on-the-equinix-customer-portal "Direct link to Delete the Connection on the Equinix Customer Portal")

1. In the Equinix Customer Portal, click Connections and select *Connections Inventory*.
2. Locate and click the connection.
3. Scroll to the bottom of the page and click Delete Connection.

### Accept the Deletion on the IBM Cloud Console[​](#accept-the-deletion-on-the-ibm-cloud-console "Direct link to Accept the Deletion on the IBM Cloud Console")

1. Go to the IBM Cloud console, click Interconnectivity, and select Direct Link.
2. Click the bell icon close to the Direct Link name.
3. Confirm the deletion.
