AWS Networking & Hybrid Architecture
Build production-grade AWS networking and hybrid connectivity skills from advanced VPC design through Transit Gateway, VPN, Direct Connect, Cloud WAN, hybrid DNS, centralized inspection, routing, resiliency, observability, and enterprise multi-account network architecture.
Topic 1: Hybrid Networking Foundations
Understand enterprise hybrid networking, routing domains, connectivity choices, and failure boundaries.
Topic 2: IP Address Planning and VPC CIDR Strategy
Design non-overlapping address spaces for AWS, on-premises, and future expansion.
Topic 3: Advanced VPC Architecture
Design multi-AZ VPCs with public, private, isolated, and inspection subnets.
Topic 4: VPC Routing Deep Dive
Master route selection, propagation, static routes, and asymmetric-routing risks.
Topic 5: Transit Gateway Fundamentals
Use Transit Gateway as a central routing hub for VPCs and hybrid networks.
Topic 6: Transit Gateway Attachments and Routing
Configure VPC, VPN, and Direct Connect connectivity through Transit Gateway.
Topic 7: Transit Gateway Peering and Multi-Region Networking
Connect Transit Gateways across Regions and design controlled global routing.
Topic 8: AWS Site-to-Site VPN Architecture
Connect on-premises networks to AWS using managed IPSec VPN tunnels.
Topic 9: VPN Routing and BGP
Use BGP, route propagation, and routing policies for resilient hybrid VPNs.
Topic 10: AWS Direct Connect Fundamentals
Understand dedicated and hosted connections, VIFs, BGP, and private network paths.
Topic 11: Direct Connect Gateway
Use Direct Connect Gateway to connect Direct Connect to VPC and transit architectures.
Topic 12: Direct Connect Resiliency and High Availability
Design redundant Direct Connect connectivity and combine it with VPN failover.
Topic 13: AWS Cloud WAN
Use Cloud WAN to build centrally managed global networks and segmented connectivity.
Topic 14: Cloud WAN Segmentation and Policy
Design isolated production, development, shared, and hybrid network segments.
Topic 15: Hybrid DNS Architecture
Design DNS resolution between AWS VPCs and on-premises networks.
Topic 16: AWS PrivateLink and VPC Endpoints
Provide private service connectivity without broad network routing or public exposure.
Topic 17: Centralized Egress and Internet Access
Design centralized outbound internet access using Transit Gateway, Network Firewall, and NAT.
Topic 18: Centralized Network Inspection
Build inspection VPCs using AWS Network Firewall or third-party appliances.
Topic 19: VPC Peering and Its Limits
Understand when VPC peering is appropriate and why it does not replace Transit Gateway.
Topic 20: Shared Services and Private Connectivity
Design shared DNS, directory, monitoring, and internal service access.
Topic 21: Multi-Account Network Architecture
Build a scalable network-account model for shared connectivity and workload isolation.
Topic 22: Network Security Segmentation
Apply layered segmentation with transit routing, security groups, NACLs, and firewalls.
Topic 23: IPv6 Hybrid Networking
Design IPv6 connectivity and dual-stack hybrid routing.
Topic 24: Network Observability
Use Flow Logs, Reachability Analyzer, CloudWatch, and network telemetry for troubleshooting.
Topic 25: Hybrid Network Troubleshooting
Use a systematic method to troubleshoot VPN, Direct Connect, routing, DNS, MTU, and security failures.
Topic 26: MTU, MSS, and Packet Fragmentation
Understand packet-size problems across VPN, Direct Connect, and hybrid paths.
Topic 27: Network Resiliency and Disaster Recovery
Design redundant paths, multi-AZ inspection, multi-Region routing, and hybrid failover.
Topic 28: Hybrid Network Cost Optimization
Understand major network cost drivers and optimize without compromising resilience.
Topic 29: Hybrid Network Automation
Automate network provisioning and governance with AWS CLI and Infrastructure as Code.
Topic 30: Enterprise Hybrid Reference Architecture
Combine VPC, TGW, Direct Connect, VPN, Cloud WAN, DNS, security, and observability.
Topic 31: Hybrid Networking Capstone
Design, troubleshoot, and document a production-grade multi-account hybrid AWS network.
Course Progress
Enroll to start learning!
Course Stats
- Total Topics 31
- Total Lessons 31
- Total Sessions 31
- Total Notes 31
- Estimated Time 38.6 hours
This course is only available through program enrollment.
View Program: AWS