<a id="usm-network-overview"></a>

# Private Networking for USM

Unified Stream Manager (USM) requires a secure, private network connection between
your Confluent Platform cluster and Confluent Cloud. Only operational metadata and telemetry
flow across this connection. Your message data remains in your Confluent Platform
environment, and private networking ensures traffic never traverses the
public internet. Public networking isn’t supported.

You configure this connection from a network configuration wizard in the
Confluent Cloud Console. On the **Select network configuration** page, click **Add
network configuration**. The **Configure gateway** panel that opens lists the
following cloud providers:

* AWS
* Azure

USM currently supports AWS and Azure for private networking. Google Cloud
isn’t supported.

## Choose your cloud provider

Select the option that matches where your Confluent Cloud environment is deployed:

* [Configure AWS Private Networking for USM Agents](usm-network.md#usm-network)
* [Configure Azure Private Networking for USM Agents](usm-network-azure.md#usm-network-azure)

## Related content

* [Unified Stream Manager in Confluent Cloud](../overview.md#cloud-usm-overview)
* [Register Your Confluent Platform Cluster](overview.md#cloud-usm-register)
* [Configure AWS Private Networking for USM Agents](usm-network.md#usm-network)
* [Configure Azure Private Networking for USM Agents](usm-network-azure.md#usm-network-azure)
