Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

1) AWS Management Console → Services from Top menu → type "vpc". You can directly connect to that menu at https://ap-northeast-2.console.aws.amazon.com/vpc/home?region=ap-northeast-2

2) Launch VPC wizard: https://ap-northeast-2.console.aws.amazon.com/vpc/home?region=ap-northeast-2#wizardSelector:

  • Select VPC with Public and Private Subnets
  • Put proper name to VPC Name, Public subnet, Private subnet associated with Availability Zone1.
  • Assign Elastic IP designed at STEP 1
  • Leave other values as default like IPv4 CIDR block, Hardware tenancy, and etc.

...

  • Your gateway would be automatically created. Just name it.

STEP 4. Create

...

Subnets

https://ap-northeast-2.console.aws.amazon.com/vpc/home?region=ap-northeast-2#subnets:sort=SubnetId

  • One for Availability Zone A, the other for Availability Zone B or C

...

NameIPv4 CIDRAvailability Zone
PublicSubnet-az110.0.0.0/24az1
PrivateSubnet-app-az110.0.1.0/24az1
PrivateSubnet-db-az110.0.2.0/24az1
PublicSubnet-az210.0.3.0/24az3
PrivateSubnet-app-az210.0.4.0/24az3
PrivateSubnet-db-az210.0.5.0/24az3

STEP 5. Set Route Tables

https://ap-northeast-2.console.aws.amazon.com/vpc/home?region=ap-northeast-2#subnets2#RouteTables:sort=SubnetId

  • One for App on Availability Zone A, the other for Availability Zone B or C
  • One for DB on Availability Zone A, the other for Availability Zone B or C

STEP 6. Set Public Route Tables

1) Usually automatically generated, and requires renaming like "Public RT" for you

2) Select your route table →  move tap to "Routes" →  add route → add "0.0.0.0/0" and set target to internet gateway defined at STEP 3

3) move tap to "Subnet Associations" →  Edit subnet associations -> Select only "public subnets" -> Save

STEP 7. Set Private Route Tables

1) Create Private Route Table and name it like "Private RT" for you

...

routeTableId

Name Route Table ID by "Elplicit subnet association" and "Main" like below:

NameExplicit subnet associationMain
PublicRTsubnet-****No
PrivateRT
Yes


STEP 8. Create security group

...

STEP 10. Creating instances

https://ap-northeast-2.console.aws.amazon.com/ec2/v2/home?region=ap-northeast-2#Instances:

1) Launching  Instances → Choose an AMI (Amazon Machine Image) → Free Tier only (if you are new)

...