Hello!
I am Michael Wittig
The author of Amazon Web Services in
Action (Manning). Co-founder of widdix,
an independent AWS consultancy.
You can find me at:
@hellomichibye
https://cloudonaut.io
Security Group References
SSH Bastion Host Load Balancer
Backend
Slide 13
Slide 13 text
Security Groups are Stateful
The response traffic is always allowed. Both
inbound and outbound.
Slide 14
Slide 14 text
VPC Flow Logs
Records network traffic in
~5 minutes chunks
Not enabled by default
Record Schema
version
account-id
interface-id
srcaddr
dstaddr
srcport
dstport
IANA protocol number (6 := TCP)
packets
bytes
start in Unix seconds
end in Unix seconds
action
status
Slide 15
Slide 15 text
VPC
10.0.0.0/16
Public Subnet B
10.0.32.0/20
Public Subnet A
10.0.0.0/20
Example
Private Subnet A
10.0.16.0/20
Private Subnet B
10.0.48.0/20
VPC
10.100.0.0/16
Public Subnet A
10.100.0.0/20
Private Subnet A
10.100.16.0/20
https://github.com/widdix/learn-network-security
Slide 16
Slide 16 text
Thanks!
You can find me at:
@hellomichibye
https://cloudonaut.io
Special thanks to:
▷ Presentation template
by SlidesCarnival
▷ Photographs by Pexels