























Private subnet
DNS
AWS Direct Connect
Virtual private gateway
Private subnet
DNS
AWS Direct Connect
Virtual private gateway
They are stateful and allow all inbound traffic by default.
They are stateful and deny all inbound traffic by default.
They are stateless and allow all inbound traffic by default.
They are stateless and deny all inbound traffic by default.
They are stateful and allow all inbound traffic by default.
They are stateful and deny all inbound traffic by default.
They are stateless and allow all inbound traffic by default.
They are stateless and deny all inbound traffic by default.
Internet gateway
Public subnet
Edge location
Security group
Internet gateway
Public subnet
Edge location
Security group
Amazon Virtual Private Cloud
AWS Direct Connect
Amazon CloudFront
Amazon Route 53
Amazon Virtual Private Cloud
AWS Direct Connect
Amazon CloudFront
Amazon Route 53
Launching resources in a customer-defined virtual network
Storing local copies of content at edge locations around the world
Connecting a VPC to the internet
Translating a domain name to an IP address
Launching resources in a customer-defined virtual network
Storing local copies of content at edge locations around the world
Connecting a VPC to the internet
Translating a domain name to an IP address
