Justin Phillips posted Mar 23, 2022 2:04 AM


· Question 1: What are the components of an Amazon VPC?

· In regards to the components of the Amazon VPC, they can be broken down into 3 major components; a virtual private cloud (VPC), the subnet, and the internet gateway. According to Amazon, the VPC cloud is a logically isolated virtual network within the Amazon Web Service (AWS) overall network cloud (Amazon, 2016). Think of it as a cloud within a cloud. This is where a requested VPC’s IP address is defined from the customers selected ranges. The subnet is a segment of the VPC’s IP address range where customers can place groups of isolated resources (Amazon, 2016). This would be so customers can set their own network rules or give exclusive internet access to particular resources.  Finally, the AWS internet gateway is the side of the public internet connection that Amazon has control over (Amazon, 2016). Essentially this is the part of the connection where Amazon grants authorized customers access to the AWS VPC resources. There are also a couple other components such as VPC Endpoints which enables private connectivity without the need for a Virtual Private Network (VPN). And there is also the NAT Gateway which is a highly available network translation service that assists in helping a customer’s private subnet gain access to network resources.  

· Question 2: What is the default VPC and what are its advantages?

· The default VPC is defined as a logically isolated virtual network in the AWS cloud that is automatically created for your AWS account the first time you provision Amazon EC2 resources (Bhardwaj, 2020). A default VPC in AWS offers a plethora of immediate network benefits to the customer. Some of these features include the option to change security group membership almost instantly, security group egress filtering, multiple IP addresses, and multiple network interfaces without explicitly creating a VPC (Bhardwaj, 2020). Another great benefit to the default VPC is that internet access is enabled by default and the default VPC is given an active internet gateway and public subnets with corresponding route table. This option is not available with non-default VPC’s as customers choosing the non-default option will have to setup their own networking table. So the point of the default VPC is to get new customers up and going quickly. It is great for customers that are still building their knowledge base on AWS and need things to be automated as much as possible.



Steven McLaughlin posted Mar 22, 2022 5:08 PM


Question 1: What are the components of an Amazon VPC?

Amazon Virtual Private Cloud (VPC) is the supporting infrastructure that provides virtual, configurable networking for many AWS resources and for connecting to other networks such as the internet, external private networks, and other VPCs (Piper & Clinton, 2019). For the VPC to work properly, there are several key components that need to be identified and configured. Key components include an organizationally defined IP address schema, which will incorporate the IP address range, route tables, and subnets, and network connection methods such as the various gateways and endpoints that are used to connect to other networks (Amazon, n.d.b). These components provide the foundational networking requirements to establish the VPC. However, other components that cannot be overlooked involve various security controls, such as security groups and network ACLs (Amazon, n.d.b). While network ACLs may be considered optional, they should be not be outrightly dismissed in favor of quickly implementing the VPC. 

Question 2: What is the default VPC and what are its advantages?

A default VPC is the preconfigured VPC provided by Amazon in each region when an AWS account is created that comes with several default configurations to allow immediate internet access (Amazon, n.d.a). The main advantage of the default VPC is the ease and speed with getting started in AWS. This results from the networking components configured directly by Amazon such as the private IP address range, the default subnet in the Availability Zones, an internet gateway, and other networking settings (Amazon, n.d.a). These preconfigured settings allow you to avoid the initial planning and design of a VPC for quicker cloud implementation, especially if dealing with tight maintenance schedules and organizational deadlines. Another advantage is the ability to modify these default VPC components and networking settings as needed (Amazon, n.d.a). This provides the opportunity to build on the foundation supplied by Amazon while modifying to your organization’s needs as you move from development to production.


