What is AWS VPN?
AWS VPN is a managed VPN service that establishes secure, encrypted connections between your network and AWS. The service includes two products: AWS Site-to-Site VPN for permanent network connections and AWS Client VPN for remote access by individual users.
Core Features
- Site-to-Site VPN: Permanent IPsec tunnels between on-premises and AWS
- Client VPN: OpenVPN-based remote access for end users
- Redundant Tunnels: Two tunnels per connection for high availability
- Accelerated VPN: Use AWS Global Accelerator for better performance
- CloudWatch Integration: Monitoring of tunnel status and traffic metrics
Typical Use Cases
Hybrid Cloud Connectivity: Companies connect their on-premises data centers to AWS VPCs. The VPN tunnel enables access to cloud resources as if they were on the local network.
Remote Work: With AWS Client VPN, employees securely access internal applications in AWS from anywhere. Integration with Active Directory or SAML providers enables single sign-on.
Disaster Recovery: VPN connections enable data replication to AWS for backup and DR scenarios. In an emergency, infrastructure in AWS is immediately accessible.
Benefits
- Fully managed service without own VPN hardware in AWS
- Automatic failover between redundant tunnels
- Pay-per-use pricing model without long-term commitment
- Integration with AWS Transit Gateway for complex network topologies
Integration with innFactory
As an AWS Reseller, innFactory supports you with AWS VPN: architecture design, VPN connection configuration, firewall integration, and connectivity troubleshooting.
Typical Use Cases
Frequently Asked Questions
What is the difference between Site-to-Site VPN and Client VPN?
Site-to-Site VPN connects your entire corporate network to AWS via a permanent IPsec tunnel. Client VPN allows individual users to securely access AWS resources from their devices.
What encryption does AWS VPN use?
AWS VPN uses IPsec with AES-256 encryption. For Site-to-Site VPN, both IKEv1 and IKEv2 are supported. Connections are protected by Perfect Forward Secrecy.
How much bandwidth does a VPN connection provide?
A single Site-to-Site VPN connection supports up to 1.25 Gbps. For higher bandwidth, you can use multiple VPN tunnels or AWS Direct Connect.
Can I use AWS VPN with my existing firewall?
Yes, AWS Site-to-Site VPN is compatible with all major VPN gateways and firewalls. AWS provides tested configurations for Cisco, Juniper, Palo Alto, Fortinet, and many other vendors.