The scenario
An enterprise needs to extend its on-premises data center into AWS using a secure, encrypted site-to-site VPN. The diagram connects an AWS VPC to on-premises infrastructure across the public internet.
What is in this drawing
Read the decisions behind it.
01
Use an AWS VPN gateway for the cloud side and a customer gateway router at the on-prem edge
02
Route traffic through an on-prem firewall and core switch to servers and PCs
03
Establish an encrypted VPN tunnel over the internet between the two gateways
Use this diagram template for hybrid cloud VPN architectures, AWS-to-on-premises connectivity, or any site-to-site encrypted WAN link.
More like this
Other examples in this family.
Loading drawing…
Multi-site IPsec VPN Between Headquarters and Remote Branch OfficesNetwork DiagramOpen →Loading drawing…
DMVPN Dynamic Hub-and-Spoke VPN for Distributed EnterpriseNetwork DiagramOpen →Loading drawing…
Redundant Site-to-Site VPN with Active/Standby Gateways and Load BalancingNetwork DiagramOpen →