VPC Ninja - Part 2 - Private subnets with VPN (continued) - podcast episode cover

VPC Ninja - Part 2 - Private subnets with VPN (continued)

Dec 11, 20191 hr 2 minEp. 90
--:--
--:--
Download Metacast podcast app
Listen to this episode in Metacast mobile app
Don't just listen to podcasts. Learn from them with transcripts, summaries, and chapters for every episode. Skim, search, and bookmark insights. Learn more

Episode description

Support Mobycast
https://glow.fm/mobycast

In this episode, we cover the following topics:

  • Before we get started, a CAVEAT. There are other (potentially BETTER) ways of accessing resources on private subnets. 
    • We'll talk about these (such as AWS Client VPN or AWS Systems Manager Session Manager) in future episodes. 
    • But a great choice (with the most flexibility/power) remains our current choice: a third-party software-only VPN solution. 
  • There are many options for third-party software VPNs, both commercial and open source. Some of the options we considered include: 
    • SoftEther 
    • Openswan 
    • OpenVPN (* our choice) 
  • Discussion of the different flavors and pricing models for OpenVPN Access Server.
  • Step-by-step walkthrough of installing OpenVPN Access Server via the AWS Marketplace. 
    • Including how to setup TLS for your VPN server. 
  • We detail the process of how to create private subnets within a VPC. 
    • Create new subnets to be used as private subnets, keeping in mind a multi-AZ design. 
    • Routing table considerations. 
    • Setting up a NAT gateway to forward Internet traffic for private subnets. 
  • Some pro tips to keep in mind when building out your cloud network. 
    • CIDR block considerations (the "Goldilocks" approach to sizing). 
    • Did you know that NAT gateways are SPOFs? We discuss how to improve availability. 

Links


End Song
Tachyon, by Roy England

For a full transcription of this episode, please visit the episode webpage.

We'd love to hear from you! You can reach us at:

 

For the best experience, listen in Metacast app for iOS or Android
Open in Metacast
VPC Ninja - Part 2 - Private subnets with VPN (continued) | Mobycast podcast - Listen or read transcript on Metacast