AWS Networking & Content delivery Flashcards
What is Amazon CloudFront?
CloudFront is a CDN that delivers data and applications globally with low latency.
- Makes content available globally or restricts it based on location
- Speeds up delivery of static and dynamic web content
- Uses edge locations to cache content
NB:
Did you know that if the content is already in the edge location, CloudFront delivers it immediately? If not, CloudFront retrieves the files from the origin.
data:image/s3,"s3://crabby-images/e8753/e8753db92e7383055727e50d64d28d6d4afff0cd" alt=""
How to use Amazon CloudFront in the Real world?
- CloudFront is used with S3 to deploy content (Static Website)
- CloudFronT can stop certain web attacks like DDoS.
- Geo-restricition prevents users in certain countries from accessing content.
data:image/s3,"s3://crabby-images/b8405/b8405221d7b903dfb2e2938621a273b2dbf5bd9e" alt=""
What is Amazon Global Accelerator?
Global Accelerator sends your users through the AWS global network when accessing your content, speeding up delivery.
- Improves latency and availability of single-Region applications
- Sends traffic through the AWS global network infrastructure
- 60% performance boost
- Automatically re-routes traffic to healthy available regional endpoints
data:image/s3,"s3://crabby-images/4db17/4db17413bb7f1152ad896df56bc96df7a5db93cd" alt=""
What is Amazon S3 Transfer Acceleration?
S3 Transfer Acceleration improves content uploads and downloads to and from S3 buckets.
- Fast transfer of files over long distances
- Uses CloudFront’s globally distributed edge locations
- Customers around the world can upload to a central bucket
data:image/s3,"s3://crabby-images/dab76/dab760236918bbc73f67f71cf366c4bb6351a8e3" alt=""
What is Amazon Virtual Private Cloud (VPC)
Amazon Virtual Private Cloud (VPC) is a foundational service that allows you to create a secure private network in the AWS cloud where you launch your resources.
- Private virtual network
- Launch resources like EC2 instances inside the VPC
- Isolate and protect resources
- A VPC spans Availability Zones in a Region
NB: Internet gateway allows access to the public internet
data:image/s3,"s3://crabby-images/28625/286255573ca09654026eebd7eff3c1d1dfd56a8c" alt=""
What is VPC Peering?
VPC peering allows you to connect 2 VPCs together. Peering facilitates the transfer of data in a secure manner.
data:image/s3,"s3://crabby-images/f4296/f429633ce0ee4c699105fe1f4f33e3c0550ec6fe" alt=""
What is Amazon Route 53?
Route 53 is a DNS service that routes users to applications.
- Domain name registration
- Performs health checks on AWS resources
- Supports hybrid cloud architectures
data:image/s3,"s3://crabby-images/a7784/a77840fc37169768d244813701a07792b10c4e6e" alt=""
What is AWS Direct Connect?
Direct Connect is a dedicated physical network connection from your on-premises data center to AWS.
- Dedicated physical network connection
- Connects you on-premises data center to AWS
- Data travels over a private network
- Supports a hybrid environment
data:image/s3,"s3://crabby-images/f8717/f8717af9d3ac1de92066f5da7591d32ff926a6b2" alt=""
What is AWS VPN?
Site-to-Site VPN creates a secure connection between your internal networks and your AWS VPCs.
- Similar to Direct Connect, but data travels over the public internet
- Data is automatically encrypted
- Connects your on-premises data center to AWS
- Supports a hybrid environment
data:image/s3,"s3://crabby-images/6803d/6803d4e593e63097becc7f42d2c77bf52ffc902a" alt=""
What is virtual private gateway in AWS?
You can use an AWS Direct Connect gateway to connect your AWS Direct Connect connection over a private virtual interface to one or more VPCs in any account that are located in the same or different Regions. You associate a Direct Connect gateway with the virtual private gateway for the VPC. Then, you create a private virtual interface for your AWS Direct Connect connection to the Direct Connect gateway. You can attach multiple private virtual interfaces to your Direct Connect gateway
What is a Customer Gateway Device?
A customer gateway device is a physical or software appliance that you own or manage in your on-premises network (on your side of a Site-to-Site VPN connection). You or your network administrator must configure the device to work with the Site-to-Site VPN connection.