0% found this document useful (0 votes)
49 views

AWS Account: Virtual Private Cloud (VPC)

This document outlines a standard architecture deployed by AWS QuickStart that includes: 1) A virtual private cloud with public and private subnets across multiple availability zones with network address translation and internet gateways. 2) Proxies, bastion hosts, and databases in private subnets with security groups and load balancers for access control and high availability. 3) Monitoring and logging services like CloudTrail, CloudWatch, and S3 lifecycle policies for archiving logs to Glacier for compliance.

Uploaded by

soumendra.chanda
Copyright
© © All Rights Reserved
Available Formats
Download as PPTX, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
49 views

AWS Account: Virtual Private Cloud (VPC)

This document outlines a standard architecture deployed by AWS QuickStart that includes: 1) A virtual private cloud with public and private subnets across multiple availability zones with network address translation and internet gateways. 2) Proxies, bastion hosts, and databases in private subnets with security groups and load balancers for access control and high availability. 3) Monitoring and logging services like CloudTrail, CloudWatch, and S3 lifecycle policies for archiving logs to Glacier for compliance.

Uploaded by

soumendra.chanda
Copyright
© © All Rights Reserved
Available Formats
Download as PPTX, PDF, TXT or read online on Scribd
You are on page 1/ 3

Standard Architecture Deployed by AWS QuickStart

AWS Account

Virtual Private Cloud (VPC)


us-east-1a
Cloudtrail
NAT

Private Subnet

Private Subnet
DMZ Subnet

CloudWatch Alarms
Proxies

RDS DB

AWS Config

Bastion

Private Subnet

Private Subnet
Proxies

RDS DB

Archive S3 Lifecycle
us-east-1b Policies to
Logs Bucket
Glacier
Example Design w/Management & Dev VPCs (Notional)

Archive S3 Lifecycle
Logs Bucket Policies to
Glacier
Users

10.12.0.0/16 Management

e r
C Pe
NAT VP

DSM DSM

US-East-1b

RDP
VP
CP
ee
r NO
US-East-1c
TI
ON
AL
AWS Config Cloudtrail CloudWatch
Rules Alarms
https://aws.amazon.com/architecture/icons/

EC2 Instance S3 Bucket Internet Gateway Security Group

RDS DB master Elastic Load Balancer (ELB) Availability Zone


IAM

RDS DB standby Autoscaling Group Security Groups


DynamoDB

CloudWatch VPN Gateway Route Table


SQS Queue

You might also like