Bash, the Crucial Exams Chat Bot
AI Bot

Advanced Networking in AWS for DevOps Engineers  Flashcards

AWS DevOps Engineer Professional DOP-C02 Flashcards

FrontBack
AWS Global AcceleratorA networking service that improves the availability and performance of applications with global users by utilizing static IP addresses and accelerating traffic via AWS edge locations
AWS Network FirewallA managed service offering stateful and stateless inspection, intrusion prevention, and filtering for network traffic
AWS Private DNSEnables private resolution of DNS names in resources within your VPC
AWS WAF (Web Application Firewall)A managed service that protects web applications by controlling inbound and outbound traffic based on customizable security rules
Bastion Host in AWS NetworkingA hardened remote access server within a public subnet designed to enable administrative access to instances within a private subnet
Classic Load Balancer vs Application Load BalancerClassic Load Balancer operates at Layer 4 (TCP), while Application Load Balancer operates at Layer 7 (HTTP/HTTPS)
Cross-Region VPC PeeringAllows VPC peering connections between VPCs located in different AWS regions
Difference between VPC peering and Transit GatewayVPC peering is direct one-to-one communication while Transit Gateway acts as a centralized hub for multiple VPCs and networks
Direct Connect GatewayFacilitates communication between AWS Direct Connect connections and multiple VPCs spread across different regions
DNS failover with Route 53A mechanism in Route 53 to route traffic to a backup resource when the primary resource becomes unhealthy
Egress-only Internet GatewayA horizontally scaled, redundant, and highly available VPC component that allows outbound internet access for IPv6 resources
Elastic IPA static IPv4 address designed for dynamic cloud computing, allowing the reassociation of IPs between resources
Elastic Load Balancer (ELB) Cross-Zone Load BalancingDistributes traffic evenly across all registered instances in multiple availability zones
Elastic Network InterfaceA virtual network interface attached to an instance that enables network communication within a VPC
Gateway Load BalancerA load balancer that helps deploy, scale, and manage third-party virtual appliances seamlessly in your VPC
Hybrid Connectivity Options in AWSIncludes VPN, AWS Direct Connect, and Transit Gateway for connecting on-premises environments to AWS
Network ACLsStateless network firewalls at the subnet level that provide an additional layer of security
Network Address Translation (NAT)A method to map private IP addresses to public IP addresses for outbound internet access
Peering Connection LimitsAWS-imposed limits specifying the number of peering connections allowed per VPC
PrivateLinkA service for securely establishing a private connection between VPCs and AWS services without exposing them to the internet
Resource Access Manager (RAM)A service enabling secure resource sharing across AWS accounts or within AWS Organizations
Route 53AWS's DNS service capable of domain registration, routing internet traffic, and health checks for resources
Route 53 health checksA feature ensuring that Route 53 routes traffic to healthy endpoints by monitoring the health of resources
Security GroupsVirtual firewalls at the instance level that control inbound and outbound traffic based on rules
Service Control Policy in NetworkingAWS Organizations' policy to restrict networking actions across accounts or resources
Split-Horizon DNS with Route 53A design using Route 53 to route traffic to different IP addresses based on the requester’s location
Static vs Dynamic Routing in AWS NetworkingStatic routing relies on manually defined routes whereas dynamic routing adapts based on network changes using routing protocols
Transit GatewayA central hub that connects multiple VPCs, on-premises networks, and AWS services for simplified and scalable networking
Transit Gateway MulticastEnables multicast traffic delivery across VPCs by leveraging the Transit Gateway for efficient group communication
Transit Gateway routing tablesVirtual tables used to define how Transit Gateway will route traffic between attached resources
Transit Gateway vs Direct ConnectTransit Gateway integrates multiple networks via AWS, while Direct Connect provides a dedicated physical connection between on-premises data centers and AWS
VPC EndpointsAllows secure, scalable private connectivity to AWS services without requiring an internet gateway or NAT device
VPC Flow LogsLogging feature tracking the IP traffic within VPCs for monitoring and network troubleshooting
VPC peeringA networking connection between two VPCs that allows traffic exchange privately without the need for a gateway or VPN connection
VPN GatewayA virtual device enabling secure connection between an AWS environment and an on-premises network
This deck delves into advanced networking concepts, such as VPC peering, Transit Gateway, Route 53, and network security strategies relevant to DevOps.
Share on...
Follow us on...