multi az AWS Archives - Anuj Varma, Hands-On Technology Architect, Clean Air Activist https://www.anujvarma.com/tag/multi-az-aws/ Production Grade Technical Solutions | Data Encryption and Public Cloud Expert Sat, 25 Jan 2020 23:57:56 +0000 en-US hourly 1 https://wordpress.org/?v=6.9.4 https://www.anujvarma.com/wp-content/uploads/anujtech.png multi az AWS Archives - Anuj Varma, Hands-On Technology Architect, Clean Air Activist https://www.anujvarma.com/tag/multi-az-aws/ 32 32 NAT Instances and Multiple Availability Zone Deployments – AWS https://www.anujvarma.com/nat-instances-and-multiple-availability-zone-deployments-aws/ https://www.anujvarma.com/nat-instances-and-multiple-availability-zone-deployments-aws/#respond Sat, 25 Jan 2020 23:57:11 +0000 https://www.anujvarma.com/?p=6443 SIMPLE ROUTES FOR A SINGLE NAT INSTANCE Configuration – ELB in front of NAT instance. NAT instance in it’s own security group (NAT_SG); ELB in it’s own Security Group (ELB_SG) […]

The post NAT Instances and Multiple Availability Zone Deployments – AWS appeared first on Anuj Varma, Hands-On Technology Architect, Clean Air Activist.

]]>
SIMPLE ROUTES FOR A SINGLE NAT INSTANCE
  1. Configuration – ELB in front of NAT instance.
  2. NAT instance in it’s own security group (NAT_SG); ELB in it’s own Security Group (ELB_SG)
  3. Inbound Rules – HTTP/S with a source of ELB_SG
  4. Outbound Rules – HTTP/S with a Destination of 0.0.0.0/0 (all)

MULTI AZ DEPLOYMENTS  -AND NATS

  • Each AZ needs it’s own NAT instance. This allows the NAT to retain the session for returning traffic – and route it back to the same instance that sent the traffic out.
  • NAT instances go straight to the IgW – not through the ALB / ELB or any firewall.

nat instances aws multi az

Need assistance with your GCP or AWS migrations or security audits? 

The post NAT Instances and Multiple Availability Zone Deployments – AWS appeared first on Anuj Varma, Hands-On Technology Architect, Clean Air Activist.

]]>
https://www.anujvarma.com/nat-instances-and-multiple-availability-zone-deployments-aws/feed/ 0