Glossary

    Virtual Private Cloud (VPC)

    Network Security

    A Virtual Private Cloud (VPC) is your own isolated section of the AWS cloud. You define its IP address range (CIDR block), create subnets, configure route tables, and control network access with security groups and NACLs.

    Key Components

    • Subnets: public (with internet gateway route) and private (no direct internet access)
    • Route Tables: control traffic routing between subnets and gateways
    • Internet Gateway: enables internet access for public subnets
    • NAT Gateway: allows private subnets to reach the internet for updates without being reachable from the internet
    • VPC Endpoints: private connections to AWS services without traversing the internet
    • Flow Logs: capture network traffic metadata for monitoring and troubleshooting

    Related AWS Services

    Related Content

    Toc Consulting: AWS Security & Cloud Architecture

    Securing your AWS estate?

    Our team helps engineering teams secure and architect AWS the right way: assessment in week one, a prioritized action plan in week two.