Site To Site VPN
- Connect
Corporate Data CenterwithAWS Cloud - Seems they are both part of same network
- Traffic between
Corporate Data CenterwithAWS Cloudgoes overPublic Internet - To set up
Site To Site VPN - Set a
Customer Gatewayin theCorporate Data Center - Set a
Virtual Private Network Gateway(i.e.VPG, i.e.VPN Gateway) inAWS VPC - In between
Customer GatewayandVPN Gateway, provision aSite To Site VPN Connection Customer Gateway- Set in
Corporate DC(i.e.Corporate Data Center) IP Addresscan be one of followings- Static IP
- If behind
NAT, useNATpublic address
Virtual Private Gatewayi.e.VPN Gateway/VPGVPN Concentratorin theAWSside of theVPN ConnectionVGWis created and attached toVPC- Possible to customize
Autonomous System Numberi.e. (ASN) - To improve performance need to use
ECMPprotocol - This protocol be enabled in
VGW - Need to implement this for each
VPN Tunnel - Result faster data transfers