VPC

VPC ์ž์„ธ-ํžˆ ์•Œ์•„๋ณด๊ธฐ ์‹ค๋ฌด ver.

VPC๋ž€?

  • ๋„คํŠธ์›Œํฌ๋ฅผ ์ถ”์ƒํ™”ํ•ด์„œ ์„ค๋ช…ํ•˜๊ธฐ์œ„ํ•ด AWS๋Š” Virtual Private Cloud๋ฅผ ๋„์ž…ํ–ˆ๋‹ค

  • ํ•œ ๊ณ„์ •์—๋Š” ์—ฌ๋Ÿฌ๊ฐœ์˜ VPC๋ฅผ ๋งŒ๋“ค ์ˆ˜ ์žˆ๋‹ค!

Default VPC

  • ๊ณ„์ •์„ ๋งŒ๋“ค๋ฉด ํ•œ region์— default VPC๊ฐ€ ํ•œ ๊ฐœ ๋งŒ๋“ค์–ด์ง„๋‹ค

    • Default VPC ์—๋Š” IPv4 CIDR 172.31.0.0/16 ๊ฐ€ ํ• ๋‹น๋œ๋‹ค

    • Default VPC ๋‚ด default subnet์—๋Š” VPC CIDR ๋ฒ”์œ„ ๋‚ด /20 ๋„คํŠธ ๋ธ”๋ก์ด ํ• ๋‹น๋œ๋‹ค

  • ๋งŒ์•ฝ default VPC์— ๊ทธ๋Œ€๋กœ Infra๋ฅผ ๊ตฌ์„ฑํ•˜๋Š” ๊ฒฝ์šฐ

    • Infra๋ฅผ ๊ตฌ์„ฑํ•˜๋Š” ์‚ฌ๋žŒ์ด ํ•ด๋‹น Network ๋Œ€์—ญ์„ ์‚ฌ์šฉํ•ด๋„ ๋˜๋А๋ƒ๊ฐ€ ๋ฌธ์ œ์ด๋‹ค

      • ๋งŒ์•ฝ ํšŒ์‚ฌ ๊ทœ๋ชจ๊ฐ€ ํด ๊ฒฝ์šฐ, ์ง€์ /์ง€์‚ฌ ๋ณ„๋กœ network ๋Œ€์—ญ์ด ๋‹ค๋ฅผ ๊ฒƒ์ด๋‹ค

        • ์ฆ‰, ์–ด๋””๊นŒ์ง€๋Š” ์—ฐ๊ฒฐ ๋  ์ˆ˜ ์žˆ๊ณ , ์–ด๋””๋Š” ์—ฐ๊ฒฐ๋  ์ˆ˜ ์—†๋‹ค๋Š” ๋ฌธ์ œ์ ์„ ๊ฐ€์ง„๋‹ค

          • ๊ทธ๋ž˜์„œ ์„œ๋กœ ์นจ๋ฒ”ํ•˜๋Š” ๊ฒƒ์ด ์žˆ์ง„ ์•Š์„์ง€ ํ™•์ธํ•˜๊ธฐ ์œ„ํ•ด ๊ฐ Netwrok ๋Œ€์—ญ ํญ์„ ์•Œ๊ณ  ์žˆ์–ด์•ผ ํ•˜๋Š” ๋ถˆํŽธํ•จ์ด ์žˆ๋‹ค

CIDR Block์„ ์ž˜ ์„ค๊ณ„ํ•˜๊ธฐ

  • AWS VPC Network ๋Œ€์—ญ์—์„œ ํ• ๋‹นํ•  ์ˆ˜ ์žˆ๋Š” IP ์ฃผ์†Œ์˜ ๋ฒ”์œ„๋Š” ์›๋ž˜ Network address, Broadcat address ๋‘ ๊ฐ€์ง€๊ฐ€ ๋น ์ง€๋Š” ๊ฒƒ๋ณด๋‹ค ๋งŽ๋‹ค

    • ์ด 5๊ฐœ๊ฐ€ ๋น ์ง„๋‹ค

      • Network address

      • Broadcast addrss

      • Reserved by AWS for VPC router

      • Reserved by AWS

      • Reserved by AWS for future use

  • LB๋„ ์šฐ๋ฆฌ๊ฐ€ ๊ฐ–๊ณ ์žˆ๋Š” VPC IP๋ฅผ ๊ฐ€์ ธ๊ฐ€๋ฏ€๋กœ ์ด๊ฒƒ๋„ ๊ณ ๋ คํ•ด์•ผ ํ•œ๋‹ค

    • ALB, NLB, CLB ๋ชจ๋‘ redundant, HA ๊ตฌ์„ฑ์„ ์œ„ํ•ด ๊ฐ๊ฐ ์ตœ์†Œ 2๊ฐœ ํ˜น์€ Traffic์ด ๋งŽ์œผ๋ฉด ๋” ๋งŽ์ด ๊ฐ€์ ธ๊ฐ„๋‹ค

Public Cloud ํ™˜๊ฒฝ์—์„œ์˜ CIDR ์„ค์ •

  • CIDR์€ 16์œผ๋กœ ์„ค์ •ํ•˜์ž

    • ํ˜‘์†Œํ•˜๊ฒŒ ์ƒ๊ฐํ•˜์ง€ ๋ง์ž

      • ๋‚˜์ค‘์— ํ™•์žฅ ๊ณต์‚ฌํ•˜๊ฒŒ ๋  ์ˆ˜๋„ ์žˆ๋‹ค

      • Cloud์—์„œ๋Š” 16bit๊ฐ€ ์ ์ ˆํ•˜๋‹ค!

Private IPv4 addresses

RFC1918 name

IP address range

Number of addresses

Largest CIDR block (subnet mask)

Host ID size

Mask bits

Classful description[Note 1]

24-bit block

10.0.0.0 โ€“ 10.255.255.255

16777216

10.0.0.0/8 (255.0.0.0)

24 bits

8 bits

single class A network

20-bit block

172.16.0.0 โ€“ 172.31.255.255

1048576

172.16.0.0/12 (255.240.0.0)

20 bits

12 bits

16 contiguous class B networks

16-bit block

192.168.0.0 โ€“ 192.168.255.255

65536

192.168.0.0/16 (255.255.0.0)

16 bits

16 bits

256 contiguous class C networks

  • AWS๋Š” ์–ด๋А Private IP ๋Œ€์—ญ์„ ์จ๋„ ์ƒ๊ด€ ์—†๋‹ค

  • AWS ๊ด€๋ฆฌ๋ง์ด๋ž‘ ์ถฉ๋Œ๋‚˜์ง€ ์•Š๋Š”๋‹ค (AWS ์˜ ๊ฐ€์ƒ๋ง ๊ธฐ์ˆ )

DNS hostnames์™€ DNS resolution์„ Enable ํ•ด์•ผํ•˜๋Š” ์ด์œ 

dns
  • DNS hostnames

    • enable ๋˜์–ด ์žˆ์œผ๋ฉด AWS domain์„ ํ†ตํ•ด DNS lookup์ด ๊ฐ€๋Šฅํ•˜๋‹ค

  • DNS resolution

    • Disable ํ•˜๋ฉด

      • EKS ์—ฐ๊ฒฐ์‹œ ๋ฌธ์ œ๊ฐ€ ๋ฐœ์ƒํ•  ์ˆ˜ ์žˆ๋‹ค

      • Route 53์œผ๋กœ alias ์—ฐ๊ฒฐ์ด ๋ถˆ๊ฐ€๋Šฅํ•˜๋‹ค

Last updated

Was this helpful?