Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Fabz
Contributor

FW Design for AWS Cloud

Hi Checkmates,

Looking for the best practice design for AWS, found GWLBxCP on this Overview of CloudGuard Network for AWS Centralized Gateway Load Balancer

What is the best option between A Centralized GWLB Security VPC or A GWLB Security VPC for Transit Gateway (TGW), if the existing just has 3 VPCs that communicate with each other and NAT GW?

The goal is to minimize the downtime on the existing design and protect every communication. Or doyou guys have any other suggestion?

 

Thank you everyone!

0 Kudos
1 Reply
Shay_Levin
Admin
Admin

Hi.

With Solution 1 – A Centralized GWLB Security VPC , you will not be able to inspect traffic between VPCs, only between assets that are in the same VPC or VPC and the Internet.

With Solution 2 - A GWLB Security VPC for Transit Gateway (TGW) , you will also be able to inspect traffic between VPCs.

Watch the videos here and here and you will get some ideas.

 

 

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.