Securing Direct Connect
The Direct Connect links are private by design, but that private network might be passing through several provider devices before it reaches your VPC. The layer 2 connection between your VPC and your on-premises environment can be subject to sniffing on compromised equipment or even on compromised links between devices. In case we require an even higher level of security, AWS allows us to establish an IPSec VPN connection through the Direct Connect connection and, thus, automatically encrypts traffic passing between our on-premises location and AWS. This is a really good solution when compliance requirements dictate that any link can be encrypted, even if the layer 2 network is considered private. The drawback of securing ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access