VPCs Flashcards
Can VPC Peering be done between two VPCs in different AWS accounts?
Yes
Suppose VPC A is peered with VPC B, and VPC B is paired with VPC C. Is VPC A considered peered with VPC C?
NO. VPC Peering is NOT transitive!
Can you use VPC Peering to peer two VPC in different AWS regions?
Yes
Can you have two VPC subnets in the same AZ?
Yes
Can you have a subnet stretched across multiple AZs?
No
When you create a VPC, what infrastructure is created by default?
- A Default Route Table
- A Network ACL
- A Default Security Group
(Note that it does NOT create subnets or IGWs)
How many IP Addresses does Amazon Reserve per subnet?
5
What is the maximum number of IGWs you can have per VPC?
1
Can you have a security group spanning multiple VPCs?
No
Can you create an ELB with only one public subnet?
No, to create an ELB you need at least 2 public subnets
Are Bastion Hosts usually placed in a private subnet or a public subnet?
They are placed in a public subnet so you can access the private subnet
What is Direct Connect and what are its primary use cases?
- Idea is that it directly connects your data center to AWS
- Useful for high throughput workloads (lots of network traffic)
- Useful if you need a stable and reliable secure connection
What are the steps for setting up AWS Direct Connect?
- Create a virtual interface in the direct connect console. This is a PUBLIC virtual interface
- Go to the VPC Console and then to VPN Connection. Create a Customer Gateway
- Create a Virtual Private Gatway
- Attach the Virtual Private Gateway to the desired VPC
- Select VPN Connections and create a new VPN Connection.
- Select the Virtual Private Gateway and the Customer Gateway
- Once the VPN is available, set up the VPN on the customer gateway or firewall
What is AWS Global Accelerator?
A service in which you create accelerators to improve availability and performance of your applications for local and global users
How many static IP addresses does AWS assign to you for Global Accelerator?
2
(Note you can also bring your own static IPs!)