VPC and Networking Flashcards

1
Q

What does VPC mean

A

Virtual Private Cloud - private network to deploy your resources (regional resource)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is a public subnet

A

a subnet that is accessible from the internet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is a private subnet

A

A subnet that is not accessible from the internet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What do you use to determine access to the internet and between subnets

A

you use routing tables

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is NACL

A

Network ACL - A firewall which controls traffic from and to subnet
Can have ALLOW and DENY rules
Are attached at the Subnet level
Rules only include IP addresses

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is a Security Groups

A

A firewall that controls traffic to and from an ENI/ an EC2 instance
Can have only ALLOW rules
Rules inlcude IP addresses and other security groups

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are VPC Flow Logs

A

Captures info about IP traffic going into your interface
-VPC Flow logs
-Subnet Flow Logs
-Elastic Network Interface Flow logs
Helps to monitor and troubleshoot connectivity issues
Captures network info from AWS managed interfaces too
VPC Flow logs data can go to S3 / CloudWatch Logs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is VPC Peering

A

Connect two VPC, privately using AWS network
Make them behave as if they were in the same network
Must not have overlapping CIDR(IP address range)
VPC peering connection is not transitive( must be established for each VPC)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is a VPC endpoint

A

Allow you to connect to AWS Services using a private network instead of the public www network
Offers enhanced security and lower latency to access AWS services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is Site to Site VPN

A

Connect an on-premises VPN to AWS
The connection is automatically encrypted
Goes over the public internet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is Direct Connect (DX)

A

Establish a physical connection between on-premises and AWS
The connection is private, secure and fast
Goes over a private network
Takes at least a month to establish

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is a Transit Gateway

A

A peering gateway between thousands of VPC and on-premises, hub-and-spoke (star) connection
Basically a switch linking things together

How well did you know this?
1
Not at all
2
3
4
5
Perfectly