Networking & Content Delivery

Category: Networking & Content Delivery

Signed cookie-based authentication with Amazon CloudFront and AWS Lambda@Edge: Part 1 -Authentication

In this two-part blog series, you will learn how to use email addresses and domain names for user authentication. With this method, you restrict credentials-free user access to a static website. In this first blog, you will learn how to implement the authentication mechanism. In the second blog post, you will learn how to implement […]

Managing IP pools across VPCs and Regions using Amazon VPC IP Address Manager

Since the inception of IP networks, network engineers and operators have sought systems, solutions, and procedures to help them efficiently plan and manage IP spaces. AWS recently launched a new service named Amazon VPC IP Address Manager (IPAM) to make it easier for you to plan, track, and monitor IP addresses for your AWS workloads. […]

AWS Direct Connect monitoring and failover with Anomaly Detection

As enterprises move to the Cloud, having a reliable network connection to their on-premises data centers is fundamental. In this post, I show how to monitor your AWS Direct Connect links and initiate remediation (including automatic failover) when degradation in end-to-end path quality (packet loss, high latency) is detected. Multiple Direct Connect links at separate […]

Bring Your IPv6 Address Space to Amazon VPC IP Address Manager (IPAM)

Introduction Every device, resource, and workload connected to an Internet Protocol-based network depends on its IP address to communicate. The public and private IPv4 addressing space exhaustion, organizational mandates, and the need to provide service availability to IPv6-only clients drive an increasing number of organizations to adopt IPv6 in their environments. A well-managed IP address […]

Running recovery-oriented applications with Amazon Route 53 Application Recovery Controller, AWS CI/CD tools, and Terraform

Introduction AWS customers in different industries have applications that require extremely high availability that run across several AWS Regions so that they can meet latency and business continuity requirements. Amazon Route 53 Application Recovery Controller (Route 53 ARC) supports high availability by allowing customers to continuously audit the recovery readiness of their applications and centrally […]

Building highly resilient applications using Amazon Route 53 Application Recovery Controller, Part 2: Multi-Region stack

This is the second in a two-part blog post series about using the recently launched Amazon Route 53 Application Recovery Controller (Route 53 ARC) service. In Part 1, we introduced a single-Region stack, and set up Route 53 ARC features like routing controls, readiness checks, and safety rules to simplify recovery. In this post, we add a […]

Advanced Routing scenarios with AWS Direct Connect SiteLink

SiteLink, a new feature of AWS Direct Connect (DX), makes it easy to send data from one Direct Connect location to another, bypassing AWS Regions. Once you have made connections at two or more Direct Connect locations, you can turn on (or off) the SiteLink feature on Private/Transit VIFs and in minutes, a global, reliable, […]

Continuous verification of network compliance using Amazon VPC Network Access Analyzer and AWS Security Hub

Introduction As your distributed application teams operate network infrastructure, it can be challenging for central security, networking, or cloud operations teams to determine whether the correct network controls are in place. Network controls, such as firewall rules, NAT Gateways, network access control lists (ACL’s), security groups, and network segmentation, serve as a critical first line […]

Calculating data transfer leveraging Amazon VPC flow logs

Introduction There are several factors that contribute towards your overall costs incurred in AWS cloud. When it comes to networking, many customers ask about data transfer charges. You pay a Data Transfer charge when you send data out from AWS to Internet, between AWS Regions, or between Availability Zones (AZ). Today, there are multiple ways […]

AWS Global Accelerator Custom Routing with Amazon Elastic Kubernetes Service

AWS Global Accelerator is a networking service that for your end users will improve the internet performance and availability by using Amazon Web Service’s global network infrastructure. There are workloads such as multiplayer gaming, VoIP, virtual classrooms (EdTech), video collaboration and social media applications that require the application logic to assign multiple users to a […]