Arrow keys / Click to navigate

Cloud Operations on AWS

Module 11: Operate Secure and Resilient Networks

Cloud Operations on AWS

Module Overview

Layered Networking for VPCs

CloudFront+ ShieldWAFAPI Gateway /ALBAmazon VPCPublic SubnetNAT GatewayPrivate SubnetApp Instances

Network ACLs vs. Security Groups

Network ACLsSecurity Groups
Subnet-levelInstance / ENI-level
Allow & Deny rulesAllow rules only
StatelessStateful
Evaluated in rule-number orderAll rules evaluated together

Connecting Your VPC to Other Networks

Amazon VPC Flow Logs

Edge Protection Services

Troubleshooting Scenario

Issue: Instances in subnets cannot communicate with one another.

Solution: Verify it's a network issue, check network ACLs, and review VPC Flow Logs if enabled.

Module Summary

Next: Module 12 — Mountable Storage

Module 11 Mind Map

Click branch to expand