0% found this document useful (0 votes)
87 views

Cloud Engineering Assignment 1

Uploaded by

Idris Yusuf
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
87 views

Cloud Engineering Assignment 1

Uploaded by

Idris Yusuf
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
You are on page 1/ 36

Network Engineering

Lab Work

All rights reserved


Univaciti ©
L A B W O R K..

Your eagle.com and alelluia.com websites run on the same two load-
balanced instances deployed in a private subnet in a VPC. The load
balancer instance is deployed in a public subnet.

A security network scanner software is installed in a public subnet in the


same VPC. Every outgoing traffic must pass through the security scanner
instance.

Design the network.

2
ThankGod

3
Crystal

4
Crystal

5
Chelsea

6
Chelsea

7
Nkay 10.10.0.0/16

10.10.0.0/17 10.10.128.0/17

10.10.0.1 10.10.128.1

10.10.0.2 10.10.128.2

8
Route Table Nkay
Destination Target
10.10.0.0/16 local
10.10.0.0/17 10.10.128.2
0.0.0.0/0 10.10.128.1

9
Route 53 Nkay
DNS Name IP RecordType
10.10.0.1 Primary
eagle.com
10.10.0.2 Secondary
10.10.0.2 Primary
alelluia.com
10.10.0.1 Secondary

10
Amanda

11
Amanda

12
Chisom

13
Blessing

14
Divine

15
Frank

16
Frank

17
Dozie

18
Dozie

19
Onyinye

20
Chinelo

21
Chinelo

22
Justin

23
Sam

24
Demilade

25
Lota

26
Lilly

27
Lilly

28
Idris

29
Chukwuka

30
Chukwuka

31
Emeka

32
Anuli
Advanced Cloud Consulting Partner
….
LAB WORK
QUCOON CLOUD ENGINEERING

33
Deployment Architecture
PROPOSED ARCHITECTURE
Anuli LAB WORK
Your eagle.com and alelluia.com
websites run on the same two load-
balanced instances deployed in a
private subnet in a VPC. The load
balancer instance is deployed in a
public subnet.

A security network scanner software


is installed in a public subnet in the
same VPC.

Every outgoing traffic must pass


through the security scanner
instance.

Design the network.

NB: Assume IP addresses and CiDR


blocks as you wish.

Qucoon | Consulting 34
Deployment Architecture
ROUTE TABLE

DESTINATION
ROUTE TABLE 1 - PUBLIC SUBNET
TARGET
Anuli
10.10.0.0/16 LOCAL NOTE:
0.0.0.0/0 IGW Route Table 1
• SNSS receives website traffic from
10.10.128.0/17 SNSS the internet.
10.10.0.0/17 SNSS • If the destination sent by the user
is the load balancer or any of the
web servers, the target will be the
ROUTE TABLE 2 - PRIVATE SUBNET SNSS.

DESTINATION TARGET Route Table 2


• All return traffic must pass through
10.10.0.0/16 LOCAL
the SNSS.
0.0.0.0/0 SNSS

Qucoon | Consulting 35
Anuli

CLOUD ENGINEERING TRAINING


October 2024

You might also like