AWS Networking & Hybrid Architecture

Build production-grade AWS networking and hybrid connectivity skills from advanced VPC design through Transit Gateway, VPN, Direct Connect, Cloud WAN, hybrid DNS, centralized inspection, routing, resiliency, observability, and enterprise multi-account network architecture.

Topic 1: Hybrid Networking Foundations

Understand enterprise hybrid networking, routing domains, connectivity choices, and failure boundaries.

Topic 2: IP Address Planning and VPC CIDR Strategy

Design non-overlapping address spaces for AWS, on-premises, and future expansion.

Topic 3: Advanced VPC Architecture

Design multi-AZ VPCs with public, private, isolated, and inspection subnets.

Topic 4: VPC Routing Deep Dive

Master route selection, propagation, static routes, and asymmetric-routing risks.

Topic 5: Transit Gateway Fundamentals

Use Transit Gateway as a central routing hub for VPCs and hybrid networks.

Topic 6: Transit Gateway Attachments and Routing

Configure VPC, VPN, and Direct Connect connectivity through Transit Gateway.

Topic 7: Transit Gateway Peering and Multi-Region Networking

Connect Transit Gateways across Regions and design controlled global routing.

Topic 8: AWS Site-to-Site VPN Architecture

Connect on-premises networks to AWS using managed IPSec VPN tunnels.

Topic 9: VPN Routing and BGP

Use BGP, route propagation, and routing policies for resilient hybrid VPNs.

Topic 10: AWS Direct Connect Fundamentals

Understand dedicated and hosted connections, VIFs, BGP, and private network paths.

Topic 11: Direct Connect Gateway

Use Direct Connect Gateway to connect Direct Connect to VPC and transit architectures.

Topic 12: Direct Connect Resiliency and High Availability

Design redundant Direct Connect connectivity and combine it with VPN failover.

Topic 13: AWS Cloud WAN

Use Cloud WAN to build centrally managed global networks and segmented connectivity.

Topic 14: Cloud WAN Segmentation and Policy

Design isolated production, development, shared, and hybrid network segments.

Topic 15: Hybrid DNS Architecture

Design DNS resolution between AWS VPCs and on-premises networks.

Topic 16: AWS PrivateLink and VPC Endpoints

Provide private service connectivity without broad network routing or public exposure.

Topic 17: Centralized Egress and Internet Access

Design centralized outbound internet access using Transit Gateway, Network Firewall, and NAT.

Topic 18: Centralized Network Inspection

Build inspection VPCs using AWS Network Firewall or third-party appliances.

Topic 19: VPC Peering and Its Limits

Understand when VPC peering is appropriate and why it does not replace Transit Gateway.

Topic 20: Shared Services and Private Connectivity

Design shared DNS, directory, monitoring, and internal service access.

Topic 21: Multi-Account Network Architecture

Build a scalable network-account model for shared connectivity and workload isolation.

Topic 22: Network Security Segmentation

Apply layered segmentation with transit routing, security groups, NACLs, and firewalls.

Topic 23: IPv6 Hybrid Networking

Design IPv6 connectivity and dual-stack hybrid routing.

Topic 24: Network Observability

Use Flow Logs, Reachability Analyzer, CloudWatch, and network telemetry for troubleshooting.

Topic 25: Hybrid Network Troubleshooting

Use a systematic method to troubleshoot VPN, Direct Connect, routing, DNS, MTU, and security failures.

Topic 26: MTU, MSS, and Packet Fragmentation

Understand packet-size problems across VPN, Direct Connect, and hybrid paths.

Topic 27: Network Resiliency and Disaster Recovery

Design redundant paths, multi-AZ inspection, multi-Region routing, and hybrid failover.

Topic 28: Hybrid Network Cost Optimization

Understand major network cost drivers and optimize without compromising resilience.

Topic 29: Hybrid Network Automation

Automate network provisioning and governance with AWS CLI and Infrastructure as Code.

Topic 30: Enterprise Hybrid Reference Architecture

Combine VPC, TGW, Direct Connect, VPN, Cloud WAN, DNS, security, and observability.

Topic 31: Hybrid Networking Capstone

Design, troubleshoot, and document a production-grade multi-account hybrid AWS network.

Course content is locked. Please purchase or enroll to access all lessons and topics.
Course Progress
0%

Enroll to start learning!

Course Stats
  • Total Topics 31
  • Total Lessons 31
  • Total Sessions 31
  • Total Notes 31
  • Estimated Time 38.6 hours
Program Enrollment Only

This course is only available through program enrollment.

View Program: AWS