Networking & Content Delivery
Category: Networking & Content Delivery
Solving DNS zone apex challenges with third-party DNS providers using AWS
Many customers ask us how they can point their zone apex to their web content if it uses a DNS name rather than an IP address. This blog covers three design patterns and approaches that solve zone apex challenges with third-party DNS providers for applications hosted in AWS—and the pros and cons of each approach.
Upgrading AWS Direct Connect to 100 Gbps in 5 steps
Native 100 Gbps connections are now available at select AWS Direct Connect Locations worldwide. If you are using a 1 Gbps or 10 Gbps Direct Connect Dedicated Connection today, moving up to 100 Gbps can be done in five steps. This post walks through those steps and what to consider while planning your migration. These […]
Simulating Site-to-Site VPN customer gateways using strongSwan part 2: Certificate-based authentication
Do you need to either demonstrate or learn more about using certificate-based authentication with AWS Site-to-Site VPN capabilities? In part 1 of this series, we showed how to use an AWS CloudFormation template to deploy the open source strongSwan VPN solution to implement the on-premises side of an AWS Site-to-Site VPN connection. The open source […]
Centralize access using VPC interface endpoints to access AWS services across multiple VPCs
Security and cost are always a top priority for AWS customers when designing their network. Amazon Virtual Private Cloud (Amazon VPC), and it’s related networking components, offer many tools for implementing network connectivity. One such tool is VPC endpoints. Powered by AWS PrivateLink, VPC endpoints are private connections between your VPC and another AWS service […]
Using VPC Traffic Mirroring to monitor and secure your AWS infrastructure
VPC Traffic Mirroring is an AWS feature used to copy network traffic from the elastic network interface of an EC2 instance to a target for analysis. This makes a variety of network-based monitoring and analytics solutions possible on AWS. By capturing the raw packet data required for content inspection, VPC Traffic Mirroring enables agentless methods […]
Reminder: Amazon S3 and Amazon CloudFront service certificates migrating to Amazon Trust Services starting March 23, 2021
This is a reminder that Amazon S3 and Amazon CloudFront are migrating their default TLS certificates from DigiCert to Amazon Trust Services, beginning on March 23, 2021. In 2018, AWS announced a broad migration of AWS services’ TLS certificates to our own Certificate Authority, Amazon Trust Services (ATS). Your action may be required to ensure your applications continue normal operation after this […]
Improve your website availability with Amazon CloudFront
In this blog post, you will learn about the features of Amazon CloudFront that help you avoid unexpected failures and improve website availability. Click here to learn more about edge networking with AWS. When using CloudFront with your website, one of the inherent benefits is the ability to cache content. This helps to reduce the […]
Influencing Traffic over Hybrid Networks using Longest Prefix Match
Introduction Many organizations use hybrid networks to connect on-premises data centers to the cloud. These networks often use both AWS Direct Connect and private WAN MPLS links to connect data centers to cloud resources and to each other. With multiple connections, organizations need to be able to control the path that network traffic will follow […]
CloudFront Migration Series (Part 3): OLX Europe, The DevOps Way
Business and scale at OLX Group At OLX Group, we operate the fastest-growing network of trading platforms globally. Serving 300 million people every month in 30+ countries around the world, OLX Group helps buy and sell cars, find housing, get jobs, buy and sell household goods, and much more. With more than 20 well-loved local […]
Configuring DNSSEC signing and validation with Amazon Route 53
AWS now supports DNS Security Extensions (DNSSEC) signing on public zones for Amazon Route 53 and validation for Amazon Route 53 Resolver. DNSSEC is a specification that provides data integrity assurance for DNS and helps customers meet compliance mandates (for example, FedRAMP and security standards such as NIST). When you enable DNSSEC signing for a […]