Site To Site VPN
- Connect
Corporate Data Center
withAWS Cloud
- Seems they are both part of same network
- Traffic between
Corporate Data Center
withAWS Cloud
goes overPublic Internet
- To set up
Site To Site VPN
- Set a
Customer Gateway
in theCorporate Data Center
- Set a
Virtual Private Network Gateway
(i.e.VPG
, i.e.VPN Gateway
) inAWS VPC
- In between
Customer Gateway
andVPN Gateway
, provision aSite To Site VPN Connection
Customer Gateway
- Set in
Corporate DC
(i.e.Corporate Data Center
) IP Address
can be one of followings- Static IP
- If behind
NAT
, useNAT
public address
Virtual Private Gateway
i.e.VPN Gateway
/VPG
VPN Concentrator
in theAWS
side of theVPN Connection
VGW
is created and attached toVPC
- Possible to customize
Autonomous System Number
i.e. (ASN
) - To improve performance need to use
ECMP
protocol - This protocol be enabled in
VGW
- Need to implement this for each
VPN Tunnel
- Result faster data transfers