AWS Account: Virtual Private Cloud (VPC)
AWS Account: Virtual Private Cloud (VPC)
AWS Account
Private Subnet
Private Subnet
DMZ Subnet
CloudWatch Alarms
Proxies
RDS DB
AWS Config
Bastion
Private Subnet
Private Subnet
Proxies
RDS DB
Archive S3 Lifecycle
us-east-1b Policies to
Logs Bucket
Glacier
Example Design w/Management & Dev VPCs (Notional)
Archive S3 Lifecycle
Logs Bucket Policies to
Glacier
Users
10.12.0.0/16 Management
e r
C Pe
NAT VP
DSM DSM
US-East-1b
RDP
VP
CP
ee
r NO
US-East-1c
TI
ON
AL
AWS Config Cloudtrail CloudWatch
Rules Alarms
https://aws.amazon.com/architecture/icons/