VPN S2S 2 Flashcards
Connected Resources
What AWS virtual resources does a VPN connect together?
VGW and CGW
Connected Resources
What actual things are provisioned when you create a VGW?
Two ENIs, in separate AZs
Connected Resources
What’s connected when you establish a VPN?
Separate, independent tunnels from each ENI of the VGW to the single CGW.
Connected Resources
What’s the weakest link in a typical VPN setup?
CGW: likely one router
Routing
My CGW doesn’t support BGP, does that matter?
YES, you can only do static VPNs, not dynamic VPNs.
Routing
Two types of routing setups for VPNs?
Static routing and dynamic.
Routing
What is the simpler routing type for VPNs?
Static: hand-configure CIDR blocks
Routing
What’s a cool feature you give up with static VPN routing?
Load balancing and multi-connection failover
Routing
How does dynamic VPN work?
BGP protocol: routers exchange CIDR blocks