VPC and Networking Flashcards

1
Q

ElasticIP

A

It costs even if its not attached to an EC2 instance or EC2 instance is stopped

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

VPC

A

VPC is linked to a region
Withing VPC we have subnets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Subnet

A

Subnet is linked to an AZ
Used to partition your VPC
Define public and private subnets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Route Table

A

Define access to internet and between subnets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

CIDR Range

A

Range of IP addresses allowed in the VPC

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Internet Gateway

A

Helps to connect VPC to internet
Public subnet routes to internet gateway which connect to internet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

NAT Gateway & NAT Instances

A

NAT Gateway (AWS managed)
NAT Instances (Self Managed)
Allows instances in private subnet to access internet but still remain private

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Network ACL

A

Firewall that controls traffic from and to a subnet
Define Allow & Deny rules and rules include only IP addresses

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Security Groups

A

Firewall that controls traffic from and to a ENI/EC2 instance
Define Allow rules only and rules include IP addresses or other SGs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

VPC Flow Logs

A

Capture information about IP traffic going into your interfaces
The VPC flow log data can go to S3, CloudWatch Logs and Kinesis Data Firehose

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

VPC Peering

A

To connect two VPC privately using the network from AWS
IP addresses range should not overlap

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

VPC Endpoints

A

To access AWS services by a private subnet in a private network
VPC Endpoint Gateway - Connect to S3 or DynamoDB
VPN Endpoint Interface - Connect to all other AWS services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

AWS PrivateLink

A

Allows services running in your VPC in AWS to other VPCs privately
Add Network Load Balances on premise
Add Elastic Network Interface on AWS VPC

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Site to Site VPN

A

Connect on premise DC with VPC on AWS over public internet but enctypted
Add a Customer Gateway on premise
Add Virtual Private Gateway at VPC
Connect both using site to site VPN

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Direct Connect (DX)

A

Connect on premise DC with VPC on AWS over private network using physical connection

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Client VPN

A

Connect your computer to private subnet in VPC on AWS
Add AWS client VPN (OpenVPN) on the computer

17
Q

Transit Gateway

A

To connect different VPCs, client, On premise with one solution

18
Q

Gateways

A

Internet - Connect public subnet to internet
NAT/Instance - Connect private subnet to internet
Customer - For site to site VPN at on premise
Virtual Private - For site to site VPN at AWS VPC