Hybrid Environments and migration Flashcards
Routing protocol which controls the flow of data from point A through points B and C to get to point D
Border Gateway Protocol (BGP)
Routers controlled by one single entity which abstract away from the detail and only concern themselves with network routing in and out of your system
Autonomous System (AS)
BGP operates over TCP/179
True
Exchanges the best path to a destination between peers called the ASPATH
Path-vector protocol
routing withing an AS
iBGP
routing between AS
eBGP
group of protocols which set up secutre tunnels across insecure networks
IPSEC
Does IPSEC provide authentication and encryption?
Yes
Protocol for how keys are exchanged
IKE Phase 1 (Slow and heavy)
Protocol where encryption method is agreed upon and keys are used for bulk data transfer
IKE Phase 2 (Fast and Agile)
VPN with rule sets to match traffic, traffic is sent over a pair of security associations
Policy Based VPN
VPN which does target matching based on the prefix with a single pair of security associations for each network prefix
Route-based VPN
logical connection between a vpc and on-premises network encrypted using IPSEC running over the public internet
site-to-site vpn
is AWS site-to-site VPN highly available
Yes, if you implement it correctly
Target on one or more route tables
Virtual Private Gateway (VGW)
LOgical piece of configuration within AWS or the physical device the configuration represents
Customer Gateway (CGW)
Routes are added to Route Tables automatically as they are discovered
Route \Propagation
Speed limit on VPNs
1.25Gbps
Physical connection into an AWS Region
Direct Connect (DX)
DX connection consists of a connection from a business premises to a DX location to an AWS Region
True
DX provides low & consistent latency + high speeds
True
Connection from AWS Port to Customer/Partner port link
Cross Connect
DX locations are connected to AWS Region via redudant high speed connections
True