A Cantrill - ADVANCED VPC Networking Flashcards
What does VPC flow logs capture?
Captures metadata (does not capture contents).
Includes:
source and destination IP addr
source and destination ports
protocols
Are VPC flow logs realtime or not ?
No, VPC flow logs are NOT realtime.
What are gateway endpoints?
Gateway endpoints are a type of VPC endpoint which allow access to S3 and DynamoDB without using public addressing. HA, regional.
What are interface endpoints?
Interface endpoints are used to allow private IP addressing to access public AWS services. NOT HA, AZ specific.
Uses PrivateLink … If you see PrivateLink in exam ==> INTERFACE endpoint
How does GW endpoint and interface endpoints differ?
GW uses prefix lists/route table, interface uses DNS.
What is VPC peering?
VPC peering is a software defined and logical networking connection between two VPC’s. Can be same or different regions AND accounts.
Does VPC peering support transitive peering?
NO. VPC peering does NOT support transitive peering.
Where can VPC flow logs be attached?
VPCs, Subnets, ENIs.
To peer 4 VPC’s how many peering connections are required?
6 peering connections are required when connecting 4 VPCs.