AWS for Backend Developers (EC2, S3, RDS, Lambda) · Урок

VPC, подсети и таблицы маршрутизации

Спроектируйте и настройте изолированную виртуальную сеть в AWS, определив подсети и эффективно организовав маршрутизацию трафика.

Урок 1 из 411 шагов

«VPC, подсети и таблицы маршрутизации» — бесплатный урок AWS for Backend Developers (EC2, S3, RDS, Lambda) на CoddyKit. Это урок 1 из 4. Ты можешь прочитать весь урок бесплатно ниже — а потом практиковать его прямо в браузере с встроенным редактором кода и ИИ-репетитором 24/7. Это часть пути обучения AWS for Backend Developers (EC2, S3, RDS, Lambda), и твой прогресс синхронизируется между веб-версией и приложением CoddyKit. Курс AWS for Backend Developers (EC2, S3, RDS, Lambda) содержит 4 уроков всего.

Части этого урока еще не переведены и отображаются на английском.

Your Private Cloud Network

Welcome to AWS Networking! Just like your home or office network, applications in the cloud need a way to communicate securely.

AWS provides a service called Virtual Private Cloud (VPC). It's your own isolated network space in the AWS cloud where you can launch resources like EC2 instances.

Understanding Your Virtual Private Cloud

A VPC is a logically isolated section of the AWS Cloud. Think of it as your own private data center, but virtual!

  • You define its IP address range (a CIDR block).
  • It's completely isolated from other AWS customers' VPCs.
  • You have full control over your virtual networking environment.

Setting Up Your VPC's Address Range

When you create a VPC, you assign it an IPv4 CIDR block. This is a range of private IP addresses that your resources within the VPC will use.

A common choice is a /16 CIDR block, like 10.0.0.0/16. This gives you over 65,000 private IP addresses to work with!

CIDR (Classless Inter-Domain Routing) is a standard for allocating IP addresses.

Default VPCs vs. Custom Ones

When you first create an AWS account, a Default VPC is automatically provisioned in each region. It's pre-configured to get you started quickly.

However, for most real-world applications, you'll want to create a Custom VPC. This gives you more control over your network topology, IP ranges, and security settings.

Dividing Your VPC with Subnets

A subnet is a range of IP addresses within your VPC. Think of them as smaller sections or segments of your private network.

You create subnets to organize your resources and enhance security. For example, you might have one subnet for web servers and another for databases.

Public and Private Subnets

Subnets can be either public or private:

  • Public Subnet: Resources in a public subnet can access the internet directly via an Internet Gateway.
  • Private Subnet: Resources in a private subnet cannot directly access the internet. They are typically used for databases or internal application servers that need more isolation.

Subnets Are AZ Specific

An important concept: each subnet you create must reside entirely within a single Availability Zone (AZ).

This means if you want your application to be highly available across multiple AZs, you'll need to create a separate subnet in each AZ you plan to use.

Guiding Traffic with Route Tables

A route table contains a set of rules, called routes, that determine where network traffic from your subnet or gateway is directed.

Each subnet in your VPC must be associated with a route table. This association dictates how traffic flows in and out of that subnet.

Understanding Routes & Gateways

Every route table has a 'local' route by default, allowing communication within the VPC.

To enable internet access for a public subnet, you add a route to an Internet Gateway (IGW). The IGW connects your VPC to the internet.

Private subnets often use a NAT Gateway or NAT instance to send outbound internet traffic while remaining unreachable from the internet.

Test Your Networking Knowledge

Let's check your understanding of VPCs and subnets.

VPC, Subnets, and Routes Recap

In this lesson, you learned about the core components of AWS networking:

  • VPC: Your isolated virtual network.
  • Subnets: Divisions within your VPC, residing in a single AZ, categorized as public or private.
  • Route Tables: Rules that direct traffic from your subnets.
  • Internet Gateway: Connects your public subnets to the internet.

Mastering these concepts is crucial for building robust and secure cloud architectures!

Можно начать бесплатно

Изучай AWS for Backend Developers (EC2, S3, RDS, Lambda) с ИИ-репетитором — бесплатно

Пиши и запускай код прямо в браузере, получай мгновенную помощь от ИИ-репетитора 24/7 и продолжи учиться на сайте или в приложении.

Курсы
12
Уроки
48

Часто задаваемые вопросы

Урок «VPC, подсети и таблицы маршрутизации» бесплатный?

Да — полный текст урока «VPC, подсети и таблицы маршрутизации» бесплатно доступен здесь в веб-версии. Чтобы практиковать его интерактивно (встроенный редактор кода и ИИ-репетитор 24/7) и разблокировать остальной курс AWS for Backend Developers (EC2, S3, RDS, Lambda), подпишись на CoddyKit PRO. Курс AWS for Backend Developers (EC2, S3, RDS, Lambda) содержит 4 уроков всего.

Чему я научусь в уроке «VPC, подсети и таблицы маршрутизации»?

Спроектируйте и настройте изолированную виртуальную сеть в AWS, определив подсети и эффективно организовав маршрутизацию трафика. Ты практикуешь AWS for Backend Developers (EC2, S3, RDS, Lambda) с помощью реального кода, который запускаешь прямо в браузере, и ИИ-репетитор 24/7 отвечает на твои вопросы во время урока.

Нужен ли мне опыт, чтобы начать AWS for Backend Developers (EC2, S3, RDS, Lambda)?

Предыдущий опыт не требуется. AWS for Backend Developers (EC2, S3, RDS, Lambda) на CoddyKit структурирован для всех уровней — от новичков до продвинутых, поэтому ты можешь начать отсюда или с самого начала и учиться в своем темпе. Это урок 1 из 4.

Сколько времени занимает урок «VPC, подсети и таблицы маршрутизации»?

Большинство уроков CoddyKit занимают около 5–10 минут. Каждый из них компактный и интерактивный, поэтому ты постоянно делаешь прогресс и продолжаешь с того же места в веб-версии и приложении.

Можно ли писать и запускать код в этом уроке AWS for Backend Developers (EC2, S3, RDS, Lambda)?

Да. Каждый урок AWS for Backend Developers (EC2, S3, RDS, Lambda) включает встроенный редактор кода, поэтому ты пишешь и запускаешь реальный код прямо в браузере и получаешь моментальную обратную связь от AI — локальная установка не требуется.

Все уроки этого курса

  1. VPC, подсети и таблицы маршрутизации
  2. Группы безопасности и NACL
  3. Роли и политики IAM
  4. Конечные точки VPC и приватное подключение
← Назад к AWS for Backend Developers (EC2, S3, RDS, Lambda)