망 구성하기
AWS에서 신규 망을 생성하여 DMZ와 INSIDE 분리
Last updated
AWS에서 신규 망을 생성하여 DMZ와 INSIDE 분리
Last updated
VPC를 생성하고 외부망과 내부망을 나누며 필요한 아이피 대역을 서브넷팅 한 기본 논리적 구조를 생성합니다.
망 구성 카테고리
VPC
Subnets
Security Groups
Internet Gateway
Nat Gateway
Route Tables
infraworkshop-apne2
192.168.10.0/24
external
infraworkshop-apne2-public-subnet-a
192.168.10.0/26
ap-northeast-2a
external
infraworkshop-apne2-public-subnet-c
192.168.10.64/26
ap-northeast-2c
internal
infraworkshop-apne2-private-subnet-a
192.168.10.128/27
ap-northeast-2a
management
infraworkshop-apne2-private-subnet-c
192.168.10.160/27
ap-northeast-2c
external
infraworkshop-apne2-external-permit-security-group
"0.0.0.0:ICMP"
, "0.0.0.0/0:443"
, infraworkshop-apne2-admin-permit-security-group:22
0.0.0.0/0:0
internal
infraworkshop-apne2-public-subnet-c
"0.0.0.0:ICMP"
, infraworkshop-apne2-external-permit-security-group:3306
, infraworkshop-apne2-admin-permit-security-group:22
0.0.0.0/0:0
management
infraworkshop-apne2-admin-permit-security-group
my local IP/32:22
0.0.0.0/0:0
external
infraworkshop-apne2-igw
0.0.0.0
infraworkshop-apne2
internal
infraworkshop-apne2-nat-instance
0.0.0.0
infraworkshop-apne2
192.168.10.0/24
external
infraworkshop-apne2-public-route-table
infraworkshop-apne2-public-subnet-a, infraworkshop-apne2-public-subnet-c
infraworkshop-apne2-igw
internal
infraworkshop-apne2-private-route-table
infraworkshop-apne2-private-subnet-a, infraworkshop-apne2-private-subnet-c
infraworkshop-apne2-nat-instance