Networking & Content Delivery

Category: Technical How-to

Rivian’s proactive approach to identify unrouteable traffic with AWS Transit Gateway Flow Logs

Discover how Rivian optimized network visibility using AWS Transit Gateway Flow Logs. Their innovative solution proactively identifies unrouteable traffic in multi-region & multi-account AWS environments, transforming reactive monitoring into automated detection. Learn how they reduced troubleshooting time and enhanced collaboration between app and network teams using server-less architecture.

Trust goes both ways: Amazon CloudFront now supports viewer mTLS

Starting today, Amazon CloudFront supports viewer mTLS authentication from end users to CloudFront, enhancing security for highly distributed and sensitive applications. In modern architectures, securing client-server communication necessitates more than standard TLS, and mTLS extends this model by enforcing bidirectional authentication. This makes sure that both the client and the server verify each other’s identity […]

Introducing Flexible Cost Allocation for AWS Transit Gateway

Introducing Flexible Cost Allocation for AWS Transit Gateway

Today AWS announced Flexible Cost Allocation (FCA) for AWS Transit Gateway, a capability that gives you granular control over how Transit Gateway data processing costs are allocated across AWS accounts, including member accounts within AWS Organizations. With FCA, you configure metering policies for your Transit Gateway that allows you the flexibility to allocate charges to […]

Configuring the AWS WAF Anti-DDoS managed rule group for your resources and clients

Users wanting to protect themselves from Layer 7 (HTTP) DDoS threats can use the AWS WAF L7 Anti-DDoS managed rule group to detect and mitigate DDoS events in single digit seconds. The Anti-DDoS managed rule group has a default configuration that is appropriate for many applications and clients. However, there are clients that need special […]

Secure customer resource access in multi-tenant SaaS with Amazon VPC Lattice

In this post, we provide prescriptive guidance for building resilient and scalable multi-tenant Software-as-a-Service (SaaS) network architectures to address common challenges such as managing overlapping IP addresses, complex CIDR planning, and scaling connectivity to thousands of customers. We explore multiple architectural approaches using Amazon VPC Lattice with TCP resources, and conclude with detailed implementation guidance […]

Amazon CloudFront now supports IPv6 origins for end-to-end IPv6 delivery

Amazon CloudFront now supports IPv6 origins for end-to-end IPv6 delivery

IPv6 adoption continues to accelerate worldwide as organizations move beyond the limitations of IPv4 address space. At Amazon Web Services (AWS), we’ve long supported IPv6 from end users to our Amazon CloudFront network, helping end users reduce latency, improve performance, and reach on modern mobile networks. Now, we are excited to take it a step […]

Protect your Amazon Route 53 DNS zones and records

Amazon Route 53 powers mission-critical DNS services for millions of applications worldwide, and protecting your DNS infrastructure is an important step for securing your applications.. An unintended DNS configuration change or deletion can disrupt the availability of your applications and impact your business operations causing lost revenue and more. To help safeguard your DNS from […]

Dynamic routing using Amazon VPC Route Server

Amazon VPC Route Server enables dynamic routing within Amazon Virtual Private Cloud (Amazon VPC) using Border Gateway Protocol (BGP). You can use Amazon VPC Route Server for effective and intelligent traffic control between cloud applications and on-premises systems. Amazon VPC Route Server uses BGP to provide advanced control over traffic paths, especially for failures, and […]

Streamline hybrid DNS management using Amazon Route 53 Resolver endpoints delegation

Streamline hybrid DNS management using Amazon Route 53 Resolver endpoints delegation

Introduction We recently announced that Amazon Route 53 Resolver Endpoint supports Domain Name System (DNS) delegation, allowing you to delegate authority for a subdomain from your on-premises infrastructure to Route 53 and vice versa. Previously, to implement DNS delegation and maintain a unified private DNS namespace across on-premises and in Amazon Web Services (AWS) environments, […]

Streamlining RISE with SAP Connectivity using AWS Cloud WAN

Under RISE with SAP, establishing network connectivity to the RISE with SAP Amazon Virtual Private Cloud (Amazon VPC) on Amazon Web Services (AWS) is your responsibility. Traditionally, users have relied on AWS Site-to-Site VPN, AWS Direct Connect, Amazon VPC peering, or AWS Transit Gateway to connect their on-premises networks and existing AWS accounts to the […]