Automate your AWS VPC infrastructure with ease. VPC Provisioner by Axon Tech Labs simplifies complex network provisioning by transforming human-readable YAML into fully validated CloudFormation templates. It eliminates manual errors, ensures architectural consistency, and handles the heavy lifting of IAM policy generation.
Designed for platform teams, DevOps engineers, network engineers, and cloud architects who need consistent, repeatable VPC deployments across AWS accounts and regions. Define your VPC architecture in a YAML configuration file - CIDR blocks, subnets, availability zones, gateways - and the tool generates CloudFormation templates, IAM policies, and deployment reports.
Key Capabilities:
End-to-End Provisioning: Deploys a full 3-tier VPC architecture - including public, private, and database subnets across multiple AZs - with internet gateways, NAT gateways, elastic IPs, and routing.
Security-First IAM: Automatically generates least-privilege policies scoped strictly to your resource configuration.
Safe Deployments: Validates YAML schemas and CloudFormation syntax before execution, with support for isolated test deployments and change previews.
Infrastructure Integrity: Detects environment drift via on-demand checks to ensure your live AWS resources stay aligned with your config.
Audit-Ready Documentation: Produces CloudFormation templates and HTML reports for compliance and internal reviews.
Automated Teardown: Permanently removes the entire VPC stack and its dependencies with a single command.
9 Actions:
validate-config - Check YAML configuration for schema compliance and syntax errors
create-policy - Generate and export the least-privilege IAM policy tailored to your resources
create-prov-template - Generate a CloudFormation template based on your configuration
validate-prov-template - Verify provisioning template syntax and resource property names before deployment
show-changes - Preview projected infrastructure changes before deploying
test-deploy - Run a test deployment with an isolated suffix to verify permissions and resource limits
create-vpc - Provision a complete VPC including subnets, gateways, and routing
check-drift - Detect differences between your live environment and defined configuration
delete-vpc - Remove the VPC and all associated resources permanently
How It Works:
Configure: Define your desired VPC architecture in a simple YAML file
Execute: Run the Docker container with your config mounted
Review: Generate your CloudFormation template and IAM policies, then validate before deploying
Deploy: Deploy to AWS via CloudFormation for immediate, reliable resource creation
Technical Requirements:
Docker 20.10 or later
AWS account with VPC and CloudFormation permissions
AWS credentials (access key or IAM role)
512 MB RAM minimum
Highlights
Complete VPC Automation - Create VPCs with subnets, gateways, route tables, and elastic IPs in minutes. 9 actions cover the full lifecycle from configuration validation to drift detection and teardown. Supports 3-tier architecture with public, private, and database subnets across multiple availability zones.
Security-First Design - Automatically generates least-privilege IAM policies scoped to your specific deployment. CloudFormation native - generates standard templates you own, can inspect, and customize independently. Schema validation catches errors before any AWS calls.
Multi-Account, Multi-Region Ready - Deploy consistent VPC infrastructure across AWS accounts, environments, and regions from a single YAML configuration. Docker-based execution fits any CI/CD system. HTML reports document your infrastructure for compliance and audit trails.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
You buy one license for VPC Provisioner under a single contract dimension, priced per unit. This is a flat, license-based structure with no tiers or instance sizes to choose from. You adjust quantity by selecting how many units you need. The tool provisions AWS VPC infrastructure, including multi-tier subnet architecture, NAT gateways, route tables, and built-in cost estimation. Pricing does not scale by usage, VPC count, or workload size. You pay for the license itself, and the AWS resources it creates are billed separately by AWS.
Top-of-mind questions for buyers
What counts as one unit of the VPC Provisioner license, and does it limit how many VPCs I can create?
One unit is a software license to run the VPC Provisioner tool. It gives you access to the provisioning commands. The tool creates VPC infrastructure using CloudFormation, and the documentation does not tie the license to a fixed number of VPCs you can deploy.
Does the license cost cover the AWS resources the tool creates, like NAT gateways and data transfer?
No. The license covers the provisioning software only. AWS bills the resources it creates separately, including NAT Gateway data processing, data transfer, and Elastic IPs. The tool includes cost estimation to help you preview these AWS charges before deploying.
Does my license cost change based on which VPC architecture pattern I deploy?
No. The license is flat and priced per unit. Whether you deploy a simple public VPC, a public-private VPC, or a 3-tier high-availability setup, the software license cost stays the same. Only the underlying AWS resource charges differ by pattern.
www.axontechlabs.com+1
Helpful?
Vendor refund policy
30-day money-back guarantee for monthly subscriptions. Pro-rated refunds for annual subscriptions within first 30 days.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
Containers are lightweight, portable execution environments that wrap server application software in a filesystem that includes everything it needs to run. Container applications run on supported container runtimes and orchestration services, such as Amazon Elastic Container Service (Amazon ECS) or Amazon Elastic Kubernetes Service (Amazon EKS). Both eliminate the need for you to install and operate your own container orchestration software by managing and scheduling containers on a scalable cluster of virtual machines.
Version release notes
Version 1.2.1 Release Notes
Documentation Fix
Removed internal development reference from Application Architecture documentation
Replaced test account identifier with standard placeholder in sample reports
Compatibility
Fully backward compatible with all 1.2.0 configurations and commands
No functional changes
Additional details
Usage instructions
Quick start:
docker run --rm
-v ~/.aws:/home/vpcuser/.aws:ro
vpc-provisioner:latest --help
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Automate S3, VPC, and IAM infrastructure for growing ML teams. 40 actions with expanded IAM roles and broader policy coverage across 5+ AWS services. 15% bundle savings.
Automate S3, VPC, and IAM infrastructure for ML workloads. 40 actions across storage, networking, and security. Config-driven, Docker-based. 15% bundle savings.
Automate S3, VPC, and IAM infrastructure at enterprise scale. 40 actions with full IAM automation, cross-account roles, and 31 policy templates across 9 AWS services. 15% bundle savings.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.