SERVICE DOMAIN

Networking

Build isolated and secure cloud networks.

PUBLIC NOTES

Knowledge Notes

Curated from my personal study handbook
AWS Direct Connect

AWS Direct Connect

A dedicated private network connection between on-premises environments and AWS for consistent bandwidth and latency.

networkingAWS Direct ConnectAWS
Amazon CloudFront

Amazon CloudFront

A content delivery network that caches content at edge locations and protects private origins.

networkingAmazon CloudFrontAWS
Amazon Route 53

Amazon Route 53

AWS DNS service for domain registration, name resolution, health checks, and policy-based traffic routing.

networkingAmazon Route 53AWS
AWS Client VPN

AWS Client VPN

A managed remote-access VPN that connects individual users securely to AWS and connected networks.

networkingAWS Client VPNAWS
AWS Global Accelerator

AWS Global Accelerator

Provides static anycast IP addresses and routes TCP/UDP traffic over the AWS global network to healthy regional endpoints.

networkingAWS Global AcceleratorAWS
AWS PrivateLink & VPC Endpoints

AWS PrivateLink and VPC Endpoints

Private access to AWS or endpoint services from a VPC without traversing the public internet.

networkingAWS PrivateLink & VPC EndpointsAWS
AWS Site-to-Site VPN

AWS Site-to-Site VPN

Encrypted IPsec connectivity between an on-premises network and a VPC or Transit Gateway over the internet.

networkingAWS Site-to-Site VPNAWS
AWS Transit Gateway

AWS Transit Gateway

A regional hub that connects many VPCs and on-premises networks through centralized routing.

networkingAWS Transit GatewayAWS
Elastic Load Balancing

Elastic Load Balancing

Distributes traffic across healthy targets to improve availability and scale application entry points.

networkingElastic Load BalancingAWS
IGW

Internet Gateway

A highly available internet entry and exit point attached to a VPC; it does not automatically make every resource publicly reachable.

Internet GatewayVPCPublic Subnet
Security Group

Security Group

A stateful, allow-only virtual firewall attached to an ENI or supported resource, central to resource-level least privilege in AWS.

Security GroupENIStateful
VPC Networking

Subnet & Route Table

A subnet divides the VPC address space and belongs to one Availability Zone; a route table selects the next hop based on the destination.

SubnetRoute TableCIDR
VPN Components:VGW & Customer Gateway

VPN Components: VGW and Customer Gateway

A Site-to-Site VPN connects the AWS-side gateway with a customer-side device definition through redundant tunnels.

networkingVPN Components:VGW & Customer GatewayAWS
VPC

Amazon VPC

A logically isolated network in an AWS Region where you define address ranges, subnets, routes, and security controls.

NetworkingVPCSAA-C03
NAT Gateway

NAT Gateway

Gives private IPv4 resources outbound access to the internet or public services without accepting internet-initiated connections.

NAT GatewayPrivate SubnetVPC Endpoint
NACL

Network ACL

A stateless subnet-boundary access control list that supports both allow and deny rules.

Network ACLSubnetStateless

TOPIC INDEX

Services & Topics

A quick view of the knowledge covered in this domain
Back to the handbook Explore other AWS knowledge domains