Download free for 30 days
Sign in
Upload
Language (EN)
Support
Business
Mobile
Social Media
Marketing
Technology
Art & Photos
Career
Design
Education
Presentations & Public Speaking
Government & Nonprofit
Healthcare
Internet
Law
Leadership & Management
Automotive
Engineering
Software
Recruiting & HR
Retail
Sales
Services
Science
Small Business & Entrepreneurship
Food
Environment
Economy & Finance
Data & Analytics
Investor Relations
Sports
Spiritual
News & Politics
Travel
Self Improvement
Real Estate
Entertainment & Humor
Health & Medicine
Devices & Hardware
Lifestyle
Change Language
Language
English
Español
Português
Français
Deutsche
Cancel
Save
Submit search
EN
Uploaded by
chiakeehong5
25 views
Module 2 - Networking on AWS -Animated.pdf
aws
Technology
◦
Read more
0
Save
Share
Embed
Embed presentation
Download
Download to read offline
1
/ 36
2
/ 36
3
/ 36
4
/ 36
5
/ 36
6
/ 36
7
/ 36
8
/ 36
9
/ 36
10
/ 36
11
/ 36
12
/ 36
13
/ 36
14
/ 36
15
/ 36
16
/ 36
17
/ 36
18
/ 36
19
/ 36
20
/ 36
21
/ 36
22
/ 36
23
/ 36
24
/ 36
25
/ 36
26
/ 36
27
/ 36
28
/ 36
29
/ 36
30
/ 36
31
/ 36
32
/ 36
33
/ 36
34
/ 36
35
/ 36
36
/ 36
More Related Content
PDF
AWS VPC
by
KiranChinnagangannag
PDF
PLNOG 17 - Tomasz Stachlewski - Infrastruktura sieciowa w chmurze AWS
by
PROIDEA
PPTX
AWS SSA Webinar 10 - Getting Started on AWS: Networking
by
Cobus Bernard
PPTX
Pitt Immersion Day Module 3 - networking in AWS
by
EagleDream Technologies
PDF
AWS VPC NOTES _ LEARN AWS EFFECTIVELY and Easily
by
akramemohemat
PDF
Demystify aws networking create your virtual network on aws
by
JayDobariya6
PPTX
AWS Network Topology/Architecture
by
wlscaudill
PPTX
Introduction to AWS VPC, Guidelines, and Best Practices
by
Gary Silverman
AWS VPC
by
KiranChinnagangannag
PLNOG 17 - Tomasz Stachlewski - Infrastruktura sieciowa w chmurze AWS
by
PROIDEA
AWS SSA Webinar 10 - Getting Started on AWS: Networking
by
Cobus Bernard
Pitt Immersion Day Module 3 - networking in AWS
by
EagleDream Technologies
AWS VPC NOTES _ LEARN AWS EFFECTIVELY and Easily
by
akramemohemat
Demystify aws networking create your virtual network on aws
by
JayDobariya6
AWS Network Topology/Architecture
by
wlscaudill
Introduction to AWS VPC, Guidelines, and Best Practices
by
Gary Silverman
Similar to Module 2 - Networking on AWS -Animated.pdf
PPTX
AWS VPC Fundamentals- Webinar
by
Amazon Web Services LATAM
PDF
Criando o seu datacenter virtual vpc e conectividade
by
Amazon Web Services LATAM
PPTX
Virtual Private Cloud(subnet,routetable).pptx
by
ibrahimkn04
PPTX
M3 BASCIS VIRTUAL PRIVATE CLOUD AND NETWORKS.pptx
by
kumar23bai10076
PPTX
Networking Best Practices for Your Serverless Applications
by
Chris Munns
PDF
Zero to Hero for Network Admins on AWS
by
Wilson Rogerio Lopes
PPTX
AWS network services
by
Nagesh Ramamoorthy
PPTX
Amazon Virtual Private Cloud (VPC)
by
Tejoy Vachhrajani
PDF
Creating Your Virtual Data Center
by
Monica Trantow
PPTX
Windsor AWS UG Virtual Private Cloud
by
Goran Karmisevic
PDF
AWS Networking – Advanced Concepts and new capabilities | AWS Summit Tel Aviv...
by
AWS Summits
PPTX
AWS VPC Zero to Hero in 30 Minutes.pptx
by
ujjwalsoni23
PPTX
Introduction to AWS VPC & Networking
by
Michael Pearce
PPTX
AWS VPC & Networking basic concepts
by
Abhinav Kumar
PPTX
Amazon Virtual Private Cloud - VPC 2
by
AWS Riyadh User Group
PDF
Introduction to AWS Services: Networking,_Security
by
daffapunk92
PDF
Reach: Solving AWS Networking Problems Faster
by
DanLuhring
PPTX
AWS VPC Fundamental
by
Piyush Agrawal
PDF
Amazon virtual private cloud (vpc)
by
Ki Sung Bae
PDF
AWS Direct Connect 및 VPN을 이용한 클라우드 아키텍쳐 설계:: Steve Seymour :: AWS Summit Seou...
by
Amazon Web Services Korea
AWS VPC Fundamentals- Webinar
by
Amazon Web Services LATAM
Criando o seu datacenter virtual vpc e conectividade
by
Amazon Web Services LATAM
Virtual Private Cloud(subnet,routetable).pptx
by
ibrahimkn04
M3 BASCIS VIRTUAL PRIVATE CLOUD AND NETWORKS.pptx
by
kumar23bai10076
Networking Best Practices for Your Serverless Applications
by
Chris Munns
Zero to Hero for Network Admins on AWS
by
Wilson Rogerio Lopes
AWS network services
by
Nagesh Ramamoorthy
Amazon Virtual Private Cloud (VPC)
by
Tejoy Vachhrajani
Creating Your Virtual Data Center
by
Monica Trantow
Windsor AWS UG Virtual Private Cloud
by
Goran Karmisevic
AWS Networking – Advanced Concepts and new capabilities | AWS Summit Tel Aviv...
by
AWS Summits
AWS VPC Zero to Hero in 30 Minutes.pptx
by
ujjwalsoni23
Introduction to AWS VPC & Networking
by
Michael Pearce
AWS VPC & Networking basic concepts
by
Abhinav Kumar
Amazon Virtual Private Cloud - VPC 2
by
AWS Riyadh User Group
Introduction to AWS Services: Networking,_Security
by
daffapunk92
Reach: Solving AWS Networking Problems Faster
by
DanLuhring
AWS VPC Fundamental
by
Piyush Agrawal
Amazon virtual private cloud (vpc)
by
Ki Sung Bae
AWS Direct Connect 및 VPN을 이용한 클라우드 아키텍쳐 설계:: Steve Seymour :: AWS Summit Seou...
by
Amazon Web Services Korea
Recently uploaded
PDF
Command Line Text Processing - RHCSA +.pdf
by
LinuxCert Guru
PDF
Mutation Testing for Industrial Robotic Systems (FMAS 2025)
by
Sylvain Hallé
PDF
PMI PMBOK8 Released on November 13, 2025
by
Scott M. Graffius
PDF
Supervised Machine Learning Approaches for Log-Based Anomaly Detection: A Cas...
by
Mohammed BEKKOUCHE
PDF
Beyond Basics: How to Build Scalable, Intelligent Imagery Pipelines
by
Safe Software
PPTX
Explaining ourselves – people, computers and AI
by
Alan Dix
PDF
AI in Food Production (Foodwell) - AI Solutions Supporting Operations
by
byteLAKE
PDF
IDSECCONF2025 - Nosa Shandy - Discovering and Disclosing Privacy Vulnerabilit...
by
idsecconf
PDF
IDSECCONF2025 - Ali - DursGo–Web Security Scanner with AI Analysis.pdf
by
idsecconf
PPTX
Neo4j Fraud GraphTalk Singapore Nov 2025
by
gourisachdeva2
PPTX
The power of Slack and MuleSoft | Bangalore MuleSoft Meetup #60
by
shyamraj55
PDF
How to Spot a Fraudulent Shopping Website
by
Ashwini Singh
PDF
UiPath DevConnect 2025: UiPath ScreenPlay - The Future of Human-Like Automation
by
DianaGray10
PDF
SELinux Policy Management in RHEL - RHCSA+.pdf
by
LinuxCert Guru
PDF
Building Powerful Web Apps to Improve Productivity and Engagement - Esri UK W...
by
Esri UK
PDF
Running Non-Cloud-Native Databases in Cloud-Native Environments_ Challenges a...
by
Alkin Tezuysal
PPTX
Agentic AI presentation with Python Exercises
by
Parth Mane
PPTX
Support, Monitoring, Continuous Improvement & Scaling Agentic Automation [3/3]
by
UiPathCommunity
PDF
Linux Foundation Certified System Administrator (LFCS) Exam.pdf
by
LinuxCert Guru
PPTX
AI: Beyond Generative AI and LLM | Harrie de Groot (harrie.dev)
by
Harrie de Groot
Command Line Text Processing - RHCSA +.pdf
by
LinuxCert Guru
Mutation Testing for Industrial Robotic Systems (FMAS 2025)
by
Sylvain Hallé
PMI PMBOK8 Released on November 13, 2025
by
Scott M. Graffius
Supervised Machine Learning Approaches for Log-Based Anomaly Detection: A Cas...
by
Mohammed BEKKOUCHE
Beyond Basics: How to Build Scalable, Intelligent Imagery Pipelines
by
Safe Software
Explaining ourselves – people, computers and AI
by
Alan Dix
AI in Food Production (Foodwell) - AI Solutions Supporting Operations
by
byteLAKE
IDSECCONF2025 - Nosa Shandy - Discovering and Disclosing Privacy Vulnerabilit...
by
idsecconf
IDSECCONF2025 - Ali - DursGo–Web Security Scanner with AI Analysis.pdf
by
idsecconf
Neo4j Fraud GraphTalk Singapore Nov 2025
by
gourisachdeva2
The power of Slack and MuleSoft | Bangalore MuleSoft Meetup #60
by
shyamraj55
How to Spot a Fraudulent Shopping Website
by
Ashwini Singh
UiPath DevConnect 2025: UiPath ScreenPlay - The Future of Human-Like Automation
by
DianaGray10
SELinux Policy Management in RHEL - RHCSA+.pdf
by
LinuxCert Guru
Building Powerful Web Apps to Improve Productivity and Engagement - Esri UK W...
by
Esri UK
Running Non-Cloud-Native Databases in Cloud-Native Environments_ Challenges a...
by
Alkin Tezuysal
Agentic AI presentation with Python Exercises
by
Parth Mane
Support, Monitoring, Continuous Improvement & Scaling Agentic Automation [3/3]
by
UiPathCommunity
Linux Foundation Certified System Administrator (LFCS) Exam.pdf
by
LinuxCert Guru
AI: Beyond Generative AI and LLM | Harrie de Groot (harrie.dev)
by
Harrie de Groot
Module 2 - Networking on AWS -Animated.pdf
1.
© 2022, Amazon
Web Services, Inc. or its Affiliates. Networking in AWS Wong Voon Wong Partner Solutions Architect 29 Apr 2022
2.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. Table of contents • Regions and Availability Zones (AZs) • VPC Overview • Subnets and AZs • Route Tables • Internet Access • NAT Gateways • Multi-AZ Best Practices • Security Groups • Network Access Control Lists (NACLs) • VPC Peering • VPN Connectivity • Direct Connect • Direct Connect Gateway • Transit Gateway • AWS Client VPN • Route 53 • CloudFront
3.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. Regions and Availability Zones (AZs) AWS Cloud Region – us-east-1 AZ us-east-1a AZ us-east-1b AZ us-east-1c Region – us-west-2 AZ us-west-a AZ us-west-b AZ us-west-c
4.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. AWS VPC - Overview AWS Cloud VPC Account 123456789 Region US-EAST-1 EC2 Instances Amazon RDS instance Elastic Load Balancing Amazon Simple Storage Service (S3) Amazon DynamoDB Amazon Route 53 AWS Identity and Access Management
5.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. Subnets and AZs VPC Region us-east-1 10.0.0.0/16 Subnet 1 10.0.1.0/24 Availability Zone us-east-1a Subnet 2 10.0.2.0/24 Availability Zone us-east-1b EC2 Instances Amazon RDS instance
6.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. AZ ID
7.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. Route Tables – Internal VPC Traffic VPC 10.0.0.0/16 Subnet 1 10.0.1.0/24 Route Table 1 Subnet 2 Route Table 1 Destination Target 10.0.0.0/16 local 10.0.2.0/24 Route Table 1 - Rules EC2 Instance EC2 Instance 10.0.1.1 10.0.2.1 10.0.2.1
8.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. Route Tables – Internet Traffic VPC 10.0.0.0/16 Subnet 1 10.0.1.0/24 Route Table 1 Subnet 2 Route Table 1 Destination Target 10.0.0.0/16 local 10.0.2.0/24 Route Table 1 - Rules EC2 Instance EC2 Instance 10.0.1.1 10.0.2.1 1.2.3.4 1.2.3.4 Internet
9.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. Route Tables – Internet Traffic VPC 10.0.0.0/16 Subnet 1 10.0.1.0/24 Route Table 1 Destination Target 10.0.0.0/16 local 0.0.0.0/0 Igw-12345 Route Table 1 - Rules EC2 Instance 10.0.1.1 Subnet 2 Route Table 1 10.0.2.0/24 EC2 Instance 10.0.2.1 1.2.3.4 1.2.3.4 Internet Internet gateway Destination Target 10.0.0.0/16 local
10.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. Public subnet 1 Public vs. Private Subnet VPC 10.0.0.0/16 Private Subnet 1 10.0.1.0/24 Private Route Table Public Route Table 10.0.2.0/24 EC2 Instance EC2 Instance 10.0.1.1 10.0.2.1 Internet gateway Destinatio n Target 10.0.0.0/16 local Private Route Table Destination Target 10.0.0.0/16 local 0.0.0.0/0 Igw-12345 Public Route Table
11.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. Public subnet 1 Public IPs VPC 10.0.0.0/16 Route Table 10.0.2.0/24 EC2 Instance Private IP: 10.0.2.1 Internet gateway Destination Target 10.0.0.0/16 local 0.0.0.0/0 Igw-12345 Public Route Table Public IP: 1.2.3.4
12.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. Public subnet 1 VPC - DNS & DHCP VPC 10.0.0.0/16 10.0.2.0/24 EC2 Instance Private IP: 10.0.2.1 Public IP: 1.2.3.4 VPC DNS VPC DHCP Private DNS: ip-10.0.2.1.us-west-2.compute.internal Public DNS: ec2-1.2.3.4.us-west-2.compute.amazonaws.com Reserved for AWS use: 10.0.0.0 10.0.0.1 10.0.0.2 10.0.0.3 10.0.0.255
13.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. Public subnet 1 Internet Access for Private Subnets – NAT Gateway VPC 10.0.0.0/16 Private Subnet 1 10.0.1.0/24 Private Route Table Public Route Table 10.0.2.0/24 Private instance Private IP: 10.0.1.1 Internet gateway Destination Target 10.0.0.0/16 local Private Route Table Destination Target 10.0.0.0/16 local 0.0.0.0/0 Igw-12345 Public Route Table NAT gateway 1.2.3.4 Internet Destination Target 10.0.0.0/16 local 0.0.0.0/0 ngw-345 Ngw-345 EIP: 2.3.4.5 1.2.3.4
14.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. Multi-AZ Best Practices VPC Region us-east-1 10.0.0.0/16 AZ (us-east-1a) Private Subnet 1 10.0.2.0/24 Public subnet 1 10.0.1.0/24 Web Server Database server AZ (us-east-1b) Private Subnet 2 10.0.4.0/24 Public subnet 2 10.0.3.0/24 Web Server Database standby IGW Load balancer Sync replication
15.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. Security Groups – Default Group Rules VPC 10.0.0.0/16 Subnet 1 10.0.1.0/24 Availability Zone us-east-1a EC2 Security group 1 Protocol Port Source Security Group 1 Protocol Port Destination All All 0.0.0.0/0 Inbound Rules Outbound Rules
16.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. Security Groups – Web Server Example VPC 10.0.0.0/16 Subnet 1 10.0.1.0/24 Availability Zone us-east-1a EC2 Security group 1 Protocol Port Source TCP 80 0.0.0.0/0 Security Group 1 Protocol Port Destination All All 0.0.0.0/0 Inbound Rules Outbound Rules
17.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. Subnet 1 Security Groups – Reference other groups VPC 10.0.0.0/16 10.0.1.0/24 Availability Zone us-east-1a EC2 Webserver security group Protocol Port Source TCP 80 0.0.0.0/0 Web server security group Protocol Port Destination All All 0.0.0.0/0 Inbound Rules Outbound Rules EC2 Database security group Protocol Port Source TCP 3306 sg-webserver Database security group Protocol Port Destination All All 0.0.0.0/0 Inbound Rules Outbound Rules
18.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. Security Groups – Self-referencing rules VPC 10.0.0.0/16 Subnet 1 10.0.1.0/24 Availability Zone us-east-1a EC2 Hadoop security group Protocol Port Source TCP 80 sg-hadoop Hadoop Security Group Protocol Port Destination All All 0.0.0.0/0 Inbound Rules Outbound Rules EC2 Hadoop security group EC2 Hadoop security group EC2 Hadoop security group
19.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. Network Access Control Lists (NACLs) VPC Region us-east-1 10.0.0.0/16 Subnet 1 10.0.1.0/24 Availability Zone us-east-1a Rule # Protocol Port Source Effect 1 All All 0.0.0.0/0 Allow NACL Configuration Inbound Rules Outbound Rules Network access control list Rule # Protocol Port Source Effect 1 All All 0.0.0.0/0 Allow
20.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. Private Subnet 1 VPC Building Blocks - Summary Public subnet 1 VPC 10.0.0.0/16 10.0.1.0/24 Private Route Table Public Route Table 10.0.2.0/24 Database EC2 Internet gateway NAT gateway EC2 webserver NACL NACL Database security group Web server security group
21.
© 2022, Amazon
Web Services, Inc. or its Affiliates.. Public subnet Stay on AWS network: VPC Endpoints • Connect your VPC to: • Supported AWS services • VPC endpoint services powered by PrivateLink • Doesn’t require public IPs or Internet connectivity • Horizontally scaled, redundant, and highly available • Robust access control • Metrics for traffic visibility VPC Endpoint VPC Internet gateway Private subnet EC2 Instance EC2 Instance VPC Endpoint VPC Service Amazon VPC PrivateLink Network Load Balancer (NLB) VPC Endpoint Amazon Simple Storage Service (S3) AWS Key Management Service
22.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. VPC Peering VPC 1 10.0.0.0/16 Private Subnet 1 10.0.0.0/24 Route Table 1 Private instance 10.0.0.1 Destination Target 10.0.0.0/16 local Route Table 1 Destination Target 192.168.0.0/16 local Route 2 Table Destination Target 10.0.0.0/16 local VPC 2 192.168.0.0/16 Private Subnet 2 192.168.0.0/24 Route Table 2 Private instance 192.168.0.1 Peering connection VPX-123 Destination Target 10.0.0.0/16 local 192.168.0.1 VPX-123 Destination Target 192.168.0.0/16 local 10.0.0.0/16 VPX-123
23.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. VPC Peering – No Transitive Routing VPC 1 VPC 2 VPC 3 Peering connection Peering connection • VPC 1 can reach VPC 2 • VPC 1 cannot reach VPC 3
24.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. VPC Peering – No Transitive Routing VPC 1 VPC 2 VPC 3 Peering connection Peering connection • VPC 1 can reach VPC 2 • VPC 1 can reach VPC 3 Peering connection
25.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. AWS Site-to-Site VPN On-prem data center 172.16.0.0/16 VPC 10.0.0.0/16 Virtual Private Gateway VGW-123 Customer gateway IPSec Route Table VPC Route Table Destination Target 10.0.0.0/16 local 172.16.0.0/16 VGW-123 • One VGW per VPC • BGP or static routes • Redundant IPSec tunnels • Redundant routers across two AZs Destination Target 10.0.0.0/16 local
26.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. AWS Site-to-Site VPN On-prem data center 172.16.0.0/16 VPC 10.0.0.0/16 Virtual Private Gateway VGW-123 Customer gateway IPSec Route Table VPC Route Table Destination Target 10.0.0.0/16 local 172.16.0.0/16 VGW-123 Destination Target 10.0.0.0/16 local On-prem data center 172.17.0.0/16 Customer gateway On-prem data center 172.18.0.0/16 Customer gateway IPSec IPSec
27.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. AWS Direct Connect Direct Connect Location AWS Cloud VPC Region us-east-1 Customer Data Center Customer or partner cage AWS cage Customer or partner router AWS Direct Connect Endpoint Private VIF Public VIF Amazon S3 Amazon DynamoDB EC2 VGW Customer router Equinix DA1 • 1 or 100 Gbps (50 Mbps+ via partners) • Consistent performance • May lower data transfer cost • Redundant connections optional (recommended)
28.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. VPN & Direct Connect - Mesh Topology VPC VPC VPC Data center Data center Data center VPN VPN VPC Peering Direct Connect
29.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. Transit Gateway & Direct Connect Gateway VPC VPC VPC Data center Data center Data center AWS Transit Gateway AWS Direct Connect Gateway and/or Direct Connect VPN VPN & Direct Connect
30.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. AWS Client VPN On-prem data center 172.16.0.0/16 VPC 10.0.0.0/16 VGW-123 Customer gateway IPSec Route Table User 1.2.3.4 Subnet 1 Availability Zone 1 AWS Client VPN Endpoint AWS Cloud TLS TCP or UDP Client VPN Network Interface 10.0.0.1 192.168.0.1/24 EC2 10.0.0.2 Security group Security group Route Table Authorizations With OpenVPN Client
31.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. DNS with Amazon Route 53 • Global DNS service • 100% Availability SLA • Domain registrar • Public and private DNS zones • Supports • Health checks • DNS failover • Round-robin routing • Weighted routing • Geolocation • Latency-based routing Amazon Route 53 Region us-east-1 (N. Virginia) Web Service Elastic Load Balancer GET example.com
32.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. DNS with Amazon Route 53 • Global DNS service • 100% Availability SLA • Domain registrar • Public and private DNS zones • Supports • Health checks • DNS failover • Round-robin routing • Weighted routing • Geolocation • Latency-based routing Amazon Route 53 Region us-east-1 (N. Virginia) Web Service Elastic Load Balancer Web Service Elastic Load Balancer A/B Testing App Version A 95% Traffic App Version B 5% Traffic GET example.com
33.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. DNS with Amazon Route 53 • Global DNS service • 100% Availability SLA • Domain registrar • Public and private DNS zones • Supports • Health checks • DNS failover • Round-robin routing • Weighted routing • Geolocation • Latency-based routing Amazon Route 53 Region us-east-1 (N. Virginia) Region us-west-2 (Oregon) Web Service Elastic Load Balancer Web Service Elastic Load Balancer Web Service Elastic Load Balancer Main Site Healthy GET example.com A/B Testing App Version A 95% Traffic App Version B 5% Traffic App DR Yes No
34.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. Hybrid DNS Resolution - Route 53 Resolvers On-prem data center 172.16.0.0/16 VPC 10.0.0.0/16 VGW Customer gateway dns.corp.com Subnet 1 app1.corp.com database.example.com Route 53 Resolver 10.0.2.1, 10.0.2.2
35.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. Amazon CloudFront • Global CDN • 220+ Points of Presence 1. User makes request 2. Routed to edge location 3. Edge gets from origin 4. Origin returns to edge 5. Edge caches response 6. Edge returns to user
36.
© 2021, Amazon
Web Services, Inc. or its Affiliates. © 2022, Amazon Web Services, Inc. or its Affiliates. Hands-on Lab - VPC Up Next
Download