Module 10: Networking 2

Unit notes:
“Module 10: Networking 2” in the Online Course Supplement: Architecting on AWS https://explore.skillbuilder.aws/learn/course/external/view/elearning/8319/architecting-on-aws-online-course-supplement.
“AWS PrivateLink and VPC endpoints” https://docs.aws.amazon.com/vpc/latest/privatelink/endpoint-services-overview.html.
“Gateway VPC endpoints” https://docs.aws.amazon.com/vpc/latest/privatelink/vpce-gateway.html.
“Interface VPC endpoints (AWS PrivateLink)” https://docs.aws.amazon.com/vpc/latest/privatelink/vpce-interface.html.
"AWS PrivateLink for Amazon S3" in the Amazon Simple Storage Service User Guide https://docs.aws.amazon.com/AmazonS3/latest/userguide/privatelink-interface-endpoints.html.
"Amazon VPC quotas" in the Amazon Virtual Private Cloud User Guide https://docs.aws.amazon.com/vpc/latest/userguide/amazon-vpc-limits.html.
“AWS Transit Gateway” https://aws.amazon.com/transit-gateway/.
“Examples” in the Amazon VPC: AWS Transit Gateway guide https://docs.aws.amazon.com/vpc/latest/tgw/TGW_Scenarios.html.
“What is AWS Site-to-Site VPN?” in the AWS Site-to-Site VPN User Guide https://docs.aws.amazon.com/vpn/latest/s2svpn/VPC_VPN.html.
“Adding MACsec security to AWS Direct Connect connections” in the Networking & Content Delivery blog https://aws.amazon.com/blogs/networking-and-content-delivery/adding-macsec-security-to-aws-direct-connect-connections/.
“AWS Direct Connect” https://aws.amazon.com/directconnect/.
Direct Connect “Getting Started” https://aws.amazon.com/directconnect/getting-started/.
“AWS Direct Connect virtual interfaces”in the AWS Direct Connect User Guide https://docs.aws.amazon.com/directconnect/latest/UserGuide/WorkingWithVirtualInterfaces.html.
Direct Connect and Transit Gateway https://docs.aws.amazon.com/whitepapers/latest/aws-vpc-connectivity-options/aws-direct-connect-aws-transit-gateway.html
"Monitoring health checks using CloudWatch" in the Amazon Route 53 User Guide https://docs.aws.amazon.com/Route53/latest/DeveloperGuide/monitoring-health-checks.html.
"Working with hosted zones" in the Amazon Route 53 User Guide https://docs.aws.amazon.com/Route53/latest/DeveloperGuide/hosted-zones-working-with.html.
"Choosing a routing policy" in the Amazon Route 53 User Guide https://docs.aws.amazon.com/Route53/latest/DeveloperGuide/routing-policy.html.

Limits & Quotas     
VPC https://docs.aws.amazon.com/vpc/latest/userguide/amazon-vpc-limits.html
VPN https://docs.aws.amazon.com/vpn/latest/s2svpn/vpn-limits.html
Direct Connect https://docs.aws.amazon.com/directconnect/latest/UserGuide/limits.html
Transit Gateway https://docs.aws.amazon.com/vpc/latest/tgw/transit-gateway-limits.html
PrivateLink https://docs.aws.amazon.com/vpc/latest/privatelink/vpc-limits-endpoints.html
CloudWAN https://docs.aws.amazon.com/vpc/latest/cloudwan/cloudwan-quotas.html
Route 53 https://docs.aws.amazon.com/Route53/latest/DeveloperGuide/DNSLimitations.html
  
Networking on AWS https://aws.amazon.com/products/networking/
Virtual Private Cloud (VPC) https://aws.amazon.com/vpc/
Gateway Endpoints https://docs.aws.amazon.com/vpc/latest/privatelink/vpce-gateway.html
Interface Endpoints https://docs.aws.amazon.com/vpc/latest/privatelink/vpce-interface.html
Peering Guide https://docs.aws.amazon.com/vpc/latest/peering/index.html
AWS PrivateLink https://docs.aws.amazon.com/vpc/latest/privatelink/index.html
Reachability Analyzer Guide https://docs.aws.amazon.com/vpc/latest/reachability/index.html
Network Access Analyzer Guide https://docs.aws.amazon.com/vpc/latest/network-access-analyzer/index.html
  
Site-to-Site VPN https://aws.amazon.com/vpn/site-to-site-vpn/
Documentation https://docs.aws.amazon.com/vpn/latest/s2svpn/VPC_VPN.html
Features https://aws.amazon.com/vpn/features/
  
Transit Gateway https://aws.amazon.com/transit-gateway/
Documentation https://docs.aws.amazon.com/vpc/latest/tgw/index.html
Features https://aws.amazon.com/transit-gateway/features/
Dealing with CIDR Overlap https://github.com/aws-samples/aws-transit-gateway-overlapping-cidrs
Use Cases https://docs.aws.amazon.com/vpc/latest/tgw/TGW_Scenarios.html
  
Direct Connect https://aws.amazon.com/directconnect/
Documentation https://docs.aws.amazon.com/directconnect/latest/UserGuide/Welcome.html
Features https://aws.amazon.com/directconnect/features
Direct Connect Gateway https://docs.aws.amazon.com/directconnect/latest/UserGuide/direct-connect-gateways-intro.html
Direct Connect connections https://docs.aws.amazon.com/directconnect/latest/UserGuide/WorkingWithConnections.html
Direct Connect virtual interfaces https://docs.aws.amazon.com/directconnect/latest/UserGuide/WorkingWithVirtualInterfaces.html
  
Route 53 https://aws.amazon.com/route53/
Documentation https://docs.aws.amazon.com/Route53/latest/DeveloperGuide/index.html
Private Hosted Zones https://docs.aws.amazon.com/Route53/latest/DeveloperGuide/hosted-zones-private.html
Public Hosted Zones https://docs.aws.amazon.com/Route53/latest/DeveloperGuide/AboutHZWorkingWith.html
DNS Routing Policies https://docs.aws.amazon.com/Route53/latest/DeveloperGuide/routing-policy.html
Monitoring health checks using CloudWatch https://docs.aws.amazon.com/Route53/latest/DeveloperGuide/monitoring-health-checks.html
Creating Amazon Route 53 health checks and configuring DNS failover https://docs.aws.amazon.com/Route53/latest/DeveloperGuide/dns-failover.html
  
Client VPN https://aws.amazon.com/vpn/client-vpn/
Documentation https://docs.aws.amazon.com/vpn/latest/clientvpn-admin/index.html
Client VPN User Guide https://docs.aws.amazon.com/vpn/latest/clientvpn-user/index.html
  
CloudWAN https://aws.amazon.com/cloud-wan/
Documentation https://docs.aws.amazon.com/vpc/latest/cloudwan/index.html
Features https://aws.amazon.com/cloud-wan/features/
FAQs https://aws.amazon.com/cloud-wan/faqs/
Documentation https://docs.aws.amazon.com/vpc/latest/cloudwan/index.html
  
Mind Maps:
Transit gateway https://www.awsgeek.com/AWS-Transit-Gateway/
Privatelink https://www.awsgeek.com/AWS-PrivateLink/
  
Whitepapers:
Amazon Virtual Private Cloud Connectivity Options https://docs.aws.amazon.com/whitepapers/latest/aws-vpc-connectivity-options/welcome.html?did=wp_card&trk=wp_card
Dual Stack and IPv6-only Amazon VPC Reference Architectures https://d1.awsstatic.com/architecture-diagrams/ArchitectureDiagrams/IPv6-reference-architectures-for-AWS-and-hybrid-networks-ra.pdf?did=wp_card&trk=wp_card
Architecture for Centralized Internet Egress with NAT Gateway – Inter-VPC Communication Disabled https://d1.awsstatic.com/architecture-diagrams/ArchitectureDiagrams/NAT-gateway-centralized-egress-ra.pdf?did=wp_card&trk=wp_card
Architecture for Gateway Load Balancer – North/South Inspection https://d1.awsstatic.com/architecture-diagrams/ArchitectureDiagrams/gateway-load-balancer-inspection-north-south-ra.pdf?did=wp_card&trk=wp_card
Architecture for Gateway Load Balancer – East/West Inspection https://d1.awsstatic.com/architecture-diagrams/ArchitectureDiagrams/gateway-load-balancer-inspection-east-west-ra.pdf?did=wp_card&trk=wp_card
AWS Direct Connect + AWS Transit Gateway https://docs.aws.amazon.com/whitepapers/latest/aws-vpc-connectivity-options/aws-direct-connect-aws-transit-gateway.html
Architecture for Gateway Load Balancer – East/West Inspection https://d1.awsstatic.com/architecture-diagrams/ArchitectureDiagrams/gateway-load-balancer-inspection-east-west-ra.pdf?did=wp_card&trk=wp_card
Building a Scalable and Secure Multi-VPC AWS Network Infrastructure https://docs.aws.amazon.com/whitepapers/latest/building-scalable-secure-multi-vpc-network-infrastructure/welcome.html?did=wp_card&trk=wp_card
Hybrid DNS Architectures with Route 53 Resolver Endpoints https://d1.awsstatic.com/architecture-diagrams/ArchitectureDiagrams/hybrid-dns_route53-resolver-endpoint-ra.pdf?did=wp_card&trk=wp_card
  
Blogs:
Adding MACsec security to AWS Direct Connect connections https://aws.amazon.com/blogs/networking-and-content-delivery/adding-macsec-security-to-aws-direct-connect-connections/
Centralize access using VPC interface endpoints to access AWS services across multiple VPCs https://aws.amazon.com/blogs/networking-and-content-delivery/centralize-access-using-vpc-interface-endpoints/
AWS Direct Connect Integration with VMware Cloud on AWS https://aws.amazon.com/blogs/apn/aws-direct-connect-integration-with-vmware-cloud-on-aws/
AWS App Mesh – Application-Level Networking for Cloud Applications https://aws.amazon.com/blogs/aws/aws-app-mesh-application-level-networking-for-cloud-applications/
Using Route 53 Private Hosted Zones for Cross-account Multi-region Architectures https://aws.amazon.com/blogs/architecture/using-route-53-private-hosted-zones-for-cross-account-multi-region-architectures/
  
Tutorials:
Getting started with AWS Direct Connect https://aws.amazon.com/directconnect/getting-started/
  
Videos:
Transit Gateway Reference Architecture https://youtu.be/9Nikqn_02Oc
What is an Interface VPC Endpoint and how can I create Interface Endpoint for my VPC? https://youtu.be/caJ7zh9qzmw
Back to Basics: Building a Global Network with AWS Transit Gateway https://youtu.be/Z6LD59s_wJo
AWS re:Invent 2019: Connectivity to AWS and hybrid AWS network architectures https://youtu.be/eqW6CPb58gs
AWS re:Invent 2019: Deep dive on DNS in the hybrid cloud https://youtu.be/_Z5jAs2gvPA
AWS re:Invent 2020: Global traffic management with Amazon Route 53 https://youtu.be/E33dA6n9O7I
Set up routing AWS Direct Connect private virtual interfaces to access VPC resources https://youtu.be/mj5V3_-QEW0
What's the difference between a hosted virtual interface (VIF) and a hosted connection? https://youtu.be/2e34hUCXly8
AWS re:Invent 2016: Another Day, Another Billion Packets https://youtu.be/St3SE4LWhKo
  
Trainings:
Networking Learning Plan https://explore.skillbuilder.aws/learn/lp/89/networking-learning-plan - 16 Courses/16.7 hrs.
  Transit Gateway Networking and Scaling https://explore.skillbuilder.aws/learn/course/93/transit-gateway-networking-and-scaling;lp=89
  Configure and Deploy AWS PrivateLink https://explore.skillbuilder.aws/learn/course/77/configure-and-deploy-aws-privatelink;lp=89
Understanding AWS Metworking Gateways https://explore.skillbuilder.aws/learn/course/internal/view/elearning/1377/understanding-aws-networking-gateways
AWS Network Connectivity Options https://explore.skillbuilder.aws/learn/course/internal/view/elearning/1754/aws-network-connectivity-options
  
Labs:
Qwiklabs' Comparing VPC Peering and Transit Gateway https://amazon.qwiklabs.com/focuses/22609?catalog_rank=%7B%22rank%22%3A6%2C%22num_filters%22%3A0%2C%22has_search%22%3Atrue%7D&parent=catalog&search_id=15239134 Note: This Qwiklabs lab has a cost, but you will use a student account, so there won't be any AWS charges.
AWS Networking Workshop https://networking.workshop.aws/ Note: While this lab is free, you will need to use your own AWS account, which means you may incur some charges for running resources used by the labs.
Finding and addressing Network Misconfigurations on AWS Workshop https://validating-network-reachability.awssecworkshops.com/ Note: While this lab is free, you will need to use your own AWS account, which means you may incur some charges for running resources used by the labs.
Understanding the basics of IPv6 networking on AWS Workshop https://net207-ipv6networking.workshop.aws/ Note: While this lab is free, you will need to use your own AWS account, which means you may incur some charges for running resources used by the labs.

Previous    Top    Next