1. Home
  2. Training Library
  3. Designing Secure solutions in AWS - Level 2

What is AWS Network Firewall?

Instructor: Jon Myer

What is AWS Network Firewall?

AWS Network Firewall is a fully managed service making it easy to deploy network level protection for your Amazon Virtual Private Clouds or VPCs. There is no infrastructure to manage and can quickly be deployed and set up with just a few clicks within the AWS Console. AWS Network Firewall provides the flexibility when defining firewall rules allowing fine-grained control over your network traffic, and increasing your ability to stop or block unwanted traffic.

AWS Network Firewall also provides a way to import existing rules written in common open source formats, including third party intelligence integration feeds sourced by AWS partners.

We will be talking about the different deployment models available but it’s important to note that In order to centrally manage all AWS Network Firewalls, this service seamlessly works together with AWS Firewall Manager within an AWS Organization.

To learn more about the AWS Firewall Manager, please see our existing course here:

Using AWS Firewall Manager to Centrally Manage Firewall Rules with Multiple Accounts
https://cloudacademy.com/course/using-aws-firewall-manager-centrally-manage-firewall-rules-multiple-accounts-2258/
 


Technical use cases for AWS Network Firewall are: the inspection of  VPC to VPC traffic, Filter outbound traffic, Secure AWS Direct Connect and VPN traffic or even just filter internet traffic.

Difficulty
Intermediate
Duration
2h 45m
Description

This course covers the core learning objective to meet the requirements of the 'Designing secure solutions in AWS - Level 2' skill

Learning Objectives:

  • Analyze the available options to secure credentials using features of AWS Identity and Access Management (IAM)
  • Evaluate the appropriate routing mechanism to securely access AWS service endpoints or internet-based resources from an Amazon VPC
  • Evaluate the appropriate encryption options available for data in transit and when at rest across AWS services
  • Evaluate the most appropriate key management service and options based on business requirements and governance controls

 

About the Author
Students
207743
Labs
1
Courses
211
Learning Paths
163

Stuart has been working within the IT industry for two decades covering a huge range of topic areas and technologies, from data center and network infrastructure design, to cloud architecture and implementation.

To date, Stuart has created 150+ courses relating to Cloud reaching over 180,000 students, mostly within the AWS category and with a heavy focus on security and compliance.

Stuart is a member of the AWS Community Builders Program for his contributions towards AWS.

He is AWS certified and accredited in addition to being a published author covering topics across the AWS landscape.

In January 2016 Stuart was awarded ‘Expert of the Year Award 2015’ from Experts Exchange for his knowledge share within cloud services to the community.

Stuart enjoys writing about cloud technologies and you will find many of his articles within our blog pages.