Los productos de redes de AWS le permiten aislar su infraestructura en la nube, escalar su capacidad de abastecimiento de solicitudes y conectar su red física con su red virtual privada.
Los productos de AWS trabajan juntos para satisfacer las necesidades de su aplicación. Por ejemplo, Elastic Load Balancing funciona con Amazon Virtual Private Cloud (VPC) para ofrecer características sólidas de redes y seguridad.
3. Amazon Virtual Private Cloud (VPC)
• Logical isolation of the Amazon Web Services
(AWS) Cloud
• Complete control of your virtual networking
environment
– Set your own IP address ranges
– Create subnets
– Configure routing tables and networking gateways
• Extend your corporate network and launch AWS
resources in a virtual network that you define
9. Amazon Virtual Private Cloud (VPC)
• Virtual router that connects a VPC to the Internet
• After an Internet Gateway is created, it is
attached to a VPC
Internet Gateways (IGW)
11. Amazon Virtual Private Cloud (VPC)
• Amazon Elastic Compute Cloud
(EC2) instance with routing software
that remaps network address
information to hide the private
subnet from the Internet
• Provides outbound-only or egress
access to the Internet for the private
subnet via the public subnet
Network Address Translation (NAT)
12. Amazon Virtual Private Cloud (VPC)
• Virtual firewalls that control traffic for one or
more instances
• Source can be a CIDR or Security Group
Security Group
13. Amazon Virtual Private Cloud (VPC)
• Virtual firewalls that control traffic in and out of a
subnet
• Network ACLs are stateless rules that can allow
or deny traffic
Network Address Control Lists (NACL)
14. Amazon Virtual Private Cloud (VPC)
• Three ways to connect to your VPC
– Over the Internet
– Hardware Virtual Private Network (VPN) using IPSec
• Configured in minutes
– AWS Direct Connect
• Service provided by Amazon Partner Network (APN) Partners
Corporate Datacenter Connectivity
15. AWS Direct Connect
• Dedicated network connection to AWS
• Consistent network performance
• Speeds of 50-500Mbps, 1Gbps, and 10Gbps
• Most hardware VPN solutions top at 4Gbps
• Supports Active/Active and Active/Passive
Border Gateway Protocol (BGP) Multipath
16. Amazon Route 53
• Global Domain Name System (DNS)
• Highly available and scalable – 100% availability
SLA
• Multiple routing types
– Simple Routing
– Weighted Routing
– Latency Routing
– Failover Routing
– Geolocation Routing
Active/Active (BGP multipath). Network traffic is load balanced across both connections. If one connection becomes unavailable, all traffic is routed through the other. This is the default configuration.
Active/Passive (failover). One connection is handling traffic, and the other is on standby. If the active connection becomes unavailable, all traffic is routed through the passive connection.