Amazon Virtual Private Cloud
AWS ã¯ã©ãŠãã®è«ççã«åé¢ãããã»ã¯ã·ã§ã³ãããããžã§ãã³ã°ãããŠãŒã¶ãŒãå®çŸ©ããä»®æ³ãããã¯ãŒã¯å ã® AWS ãªãœãŒã¹ãèµ·å
Amazon Virtual Private Cloud (Amazon VPC) ã§ã¯ãAWS ã¯ã©ãŠãã®è«ççã«åé¢ãããã»ã¯ã·ã§ã³ãããããžã§ãã³ã°ããã客æ§ãå®çŸ©ããä»®æ³ãããã¯ãŒã¯å
ã® AWS ãªãœãŒã¹ãèµ·åããããšãã§ããŸããèªåã® IP ã¢ãã¬ã¹ç¯å²ã®éžæããµããããã®äœæãã«ãŒãããŒãã«ããããã¯ãŒã¯ã²ãŒããŠã§ã€ã®èšå®ãªã©ãä»®æ³ãããã¯ãŒãã³ã°ç°å¢ãå®å
šã«å¶åŸ¡ã§ããŸããVPC ã§ã¯ããªãœãŒã¹ãã¢ããªã±ãŒã·ã§ã³ã«å®å
šãã€ç°¡åã«ã¢ã¯ã»ã¹ã§ãããããIPv4 ãš IPv6 ãäž¡æ¹ãšã䜿çšã§ããŸãã
Amazon VPC ã®ãããã¯ãŒã¯èšå®ã¯å®¹æã«ã«ã¹ã¿ãã€ãºã§ããŸããäŸãã°ãã€ã³ã¿ãŒããããžã®ã¢ã¯ã»ã¹ããããŠã§ããµãŒããŒã®ãããªãã¯ãµãããããäœæããããŒã¿ããŒã¹ãã¢ããªã±ãŒã·ã§ã³ãµãŒããŒãªã©ã®ããã¯ãšã³ãã·ã¹ãã ãã€ã³ã¿ãŒããããžã®ã¢ã¯ã»ã¹ããªããã©ã€ããŒããµããããã«é 眮ã§ããŸããã»ãã¥ãªãã£ã°ã«ãŒãããããã¯ãŒã¯ã¢ã¯ã»ã¹ã³ã³ãããŒã«ãªã¹ããªã©ã®è€æ°ã®ã»ãã¥ãªãã£ã¬ã€ã€ãŒã掻çšããåãµããããã® Amazon EC2 ã€ã³ã¹ã¿ã³ã¹ãžã®ã¢ã¯ã»ã¹ãã³ã³ãããŒã«ããããšãã§ããŸãã
å ããŠãæ¢åã®ããŒã¿ã»ã³ã¿ãŒãšèªåã® VPC éã«ããŒããŠã§ã¢ä»®æ³ãã©ã€ããŒããããã¯ãŒã¯ïŒVPNïŒæ¥ç¶ãäœæããããšãã§ããã®ã§ãAWS ã¯ã©ãŠããæ¢åã®ããŒã¿ã»ã³ã¿ãŒãæ¡åŒµãããã®ããã«æŽ»çšããããšãã§ããŸãã
AWS PrivateLink
AWS ã§ãã¹ããããŠãããµãŒãã¹ãžã®ãç°¡åãã€å®å
šãªæ¥ç¶ãæäŸããŸãã
ç¹åŸŽãšå©ç¹
è€æ°æ¥ç¶ã®ãªãã·ã§ã³
Amazon VPC ã«ã¯æ¥ç¶ã®ããŸããŸãªãªãã·ã§ã³ããããŸãããããªãã¯ã«ãã AWS ãªãœãŒã¹ããã³ãã©ã€ããŒãã«ããŠãããããªãœãŒã¹ã«åºã¥ããŠãVPC ãã€ã³ã¿ãŒããããããŒã¿ã»ã³ã¿ãŒããŸãã¯ãã®ä»ã® VPC ã«æ¥ç¶ããããšãã§ããŸãã
- ã€ã³ã¿ãŒãããã«çŽæ¥æ¥ç¶ïŒãããªãã¯ãµããããïŒ â ãããªãã¯ã«ã¢ã¯ã»ã¹å¯èœãªãµããããã«ã€ã³ã¹ã¿ã³ã¹ãèµ·åããããšãã§ããŸããã€ã³ã¿ãŒãããããã®ãã©ãã£ãã¯ãéä¿¡/åä¿¡ããããšãã§ããŸãã
- ãããã¯ãŒã¯ã¢ãã¬ã¹å€æã䜿çšããŠã€ã³ã¿ãŒãããã«æ¥ç¶ïŒãã©ã€ããŒããµããããïŒ â ãã©ã€ããŒããµããããã¯ãã€ã³ã¿ãŒãããããçŽæ¥ã¢ãã¬ã¹æå®ãããããªãã€ã³ã¹ã¿ã³ã¹ã«äœ¿çšããããšãã§ããŸãããã©ã€ããŒããµããããå ã®ã€ã³ã¹ã¿ã³ã¹ã¯ããããªãã¯ãµããããã®ãããã¯ãŒã¯ã¢ãã¬ã¹å€æ (NAT) ã²ãŒããŠã§ã€ãä»ããŠãã©ãã£ãã¯ãã«ãŒãã£ã³ã°ããããšã«ãã£ãŠããã©ã€ããŒã IP ã¢ãã¬ã¹ãå ¬éããããšãªããã€ã³ã¿ãŒãããã«ã¢ã¯ã»ã¹ã§ããŸãã
- èªç€ŸããŒã¿ã»ã³ã¿ãŒã«å®å šã«æ¥ç¶ â VPC å ã®ã€ã³ã¹ã¿ã³ã¹ãžãããã³ã€ã³ã¹ã¿ã³ã¹ããã®ãã¹ãŠã®ãã©ãã£ãã¯ã¯ãæ¥çæšæºã§æå·åããã IPsec ããŒããŠã§ã¢ VPN æ¥ç¶ãéããŠãèªç€Ÿã®ããŒã¿ã»ã³ã¿ãŒãžã«ãŒãã£ã³ã°ããããšãã§ããŸãã
- ä»ã® VPCïŒã㢠VPCïŒãšäºãã«ãã©ã€ããŒãã«æ¥ç¶ããŠãAWS ã¢ã«ãŠã³ããŸãã¯ãã®ä»ã® AWS ã¢ã«ãŠã³ãã«ãã£ãŠææãããè€æ°ã®ä»®æ³ãããã¯ãŒã¯ã§ãªãœãŒã¹ãå ±æããŸãã
- ã€ã³ã¿ãŒãããã²ãŒããŠã§ã€ãNATããŸãã¯ãã¡ã€ã¢ãŠã©ãŒã«ãããã·ã䜿çšãããVPC ãšã³ããã€ã³ãã䜿ã£ãŠããã©ã€ããŒãã« AWS ã®ãµãŒãã¹ã«æ¥ç¶ããŸããS3ãDynamoDBãKinesis StreamsãService CatalogãEC2 Systems Manager (SSM)ãElastic Load Balancing (ELB) APIãAmazon Elastic Compute Cloud (EC2) APIãSNS ãšãã£ã AWS ãµãŒãã¹ãå©çšã§ããŸãã
- AWS PrivateLink ã§ãµããŒãããã SaaS ãœãªã¥ãŒã·ã§ã³ã«ãã©ã€ããŒãã«æ¥ç¶ããŸãã
- å éšãµãŒãã¹ãã客æ§èªèº«ã®çµç¹å ã§ã®è²ã ãªã¢ã«ãŠã³ããš VPC ã«ãã©ã€ããŒãã«æ¥ç¶ããå éšãããã¯ãŒã¯ã¢ãŒããã¯ãã£ãå€§å¹ ã«ç°¡çŽ åããŸãã
å®å šæ§
Amazon VPC ã¯ãã»ãã¥ãªãã£ã°ã«ãŒãããããã¯ãŒã¯ã¢ã¯ã»ã¹å¶åŸ¡ãªã¹ããªã©ã®é«åºŠãªã»ãã¥ãªãã£æ©èœãæäŸããã€ã³ã¹ã¿ã³ã¹ã¬ãã«ããã³ãµããããã¬ãã«ã§åä¿¡/éä¿¡ã«å¯ŸããŠãã£ã«ã¿ãªã³ã°ãå¯èœã§ããå ããŠãAmazon S3 ã«æ ŒçŽããããŒã¿ã¯ã¢ã¯ã»ã¹ãå¶éããããšãã§ããã®ã§ãVPC å
ã®ã€ã³ã¹ã¿ã³ã¹ããã®ã¿ã¢ã¯ã»ã¹ãèš±å¯ããããšãå¯èœãšãªããŸããå¿
èŠã«å¿ããŠããããªãåé¢ãç®çãšããã«ã¹ã¿ããŒããšã«å æããŒããŠã§ã¢äžã§å®è¡ããããŒããŠã§ã¢å°æã€ã³ã¹ã¿ã³ã¹ãèµ·åããããšãã§ããŸãã
ã·ã³ãã«
AWS ãããžã¡ã³ãã³ã³ãœãŒã«ã䜿çšããŠãVPC ã¯è¿ éãã€ç°¡åã«äœæããããšãã§ããŸããäžè¬çãªãããã¯ãŒã¯èšå®ã®äžããããèªåã®ããŒãºã«æãåã£ããã®ãéžæãã[Start VPC Wizard] ãã¯ãªãã¯ããŸãããµãããããIP ç¯å²ãã«ãŒãããŒãã«ãã»ãã¥ãªãã£ã°ã«ãŒãã¯èªåçã«äœæãããã®ã§ãã客æ§ã¯ VPC ã§å®è¡ããã¢ããªã±ãŒã·ã§ã³ã®äœæã«éäžããããšãã§ããŸãã
AWS ã®ãã¹ãŠã®ã¹ã±ãŒã©ããªãã£ãšä¿¡é Œæ§
Amazon VPC ã¯ããã®ä»ã® AWS ãã©ãããã©ãŒã ãšå
šãåãå©ç¹ãæäŸããŸãããªãœãŒã¹ã¯å³åº§ã«æ¡å€§/䌞瞮ããããšãã§ããèªåã®ã¢ããªã±ãŒã·ã§ã³ã«é©ãã Amazon EC2 ã€ã³ã¹ã¿ã³ã¹ã®çš®é¡ãšæ°ãéžæããŠãå®éã«äœ¿çšãããªãœãŒã¹åã®ã¿æ¯æããçºçããŸãããããããã¹ãŠ Amazon ã®å®çžŸã®ããã€ã³ãã©ã¹ãã©ã¯ãã£å
ã§è¡ãããšãã§ããã®ã§ãã
ãŠãŒã¹ã±ãŒã¹
ã·ã³ãã«ãªãããªãã¯ãŠã§ããµã€ãããã¹ã
ããã°ãã·ã³ãã«ãªãŠã§ããµã€ããªã©ã®åºæ¬çãªãŠã§ãã¢ããªã±ãŒã·ã§ã³ã VPC ã§ãã¹ãããããšã§ãAmazon VPC ãæäŸããããé«åºŠãªãã©ã€ãã·ãŒããã³ã»ãã¥ãªãã£ã¬ã€ã€ãŒã®ã¡ãªãããåŸãããšãã§ããŸããã»ãã¥ãªãã£ã°ã«ãŒãã®ã«ãŒã«ãäœæããããšã«ããããŠã§ããµã€ããã»ãã¥ãªãã£ã§ä¿è·ããããšãã§ããŸããã»ãã¥ãªãã£ã°ã«ãŒãã®ã«ãŒã«ã¯ããŠã§ããµãŒããŒãã€ã³ã¿ãŒãããããã® HTTP ããã³ SSL ãªã¯ãšã¹ãã«å¿çããã®ãèš±å¯ãããšåæã«ããŠã§ããµãŒããŒãã€ã³ã¿ãŒããããžã®æ¥ç¶ãçŠæ¢ããããšãã§ããŸããAmazon VPC ã³ã³ãœãŒã«ãŠã£ã¶ãŒããã [VPC with a Single Public Subnet Only] ãéžæããŠããã®ãŠãŒã¹ã±ãŒã¹ã«å¯Ÿå¿ãã VPC ãäœæããããšãã§ããŸãã
å€éå±€ã®ãŠã§ãã¢ããªã±ãŒã·ã§ã³ããã¹ã
Amazon VPC ã䜿çšããŠå€éå±€ã®ãŠã§ãã¢ããªã±ãŒã·ã§ã³ããã¹ãã§ãããŠã§ããµãŒããŒãã¢ããªã±ãŒã·ã§ã³ãµãŒããŒãããŒã¿ããŒã¹éã®ã¢ã¯ã»ã¹ãšã»ãã¥ãªãã£ãå³å¯ã«ç®¡çããããšãã§ããŸãããããªãã¯ã«ã¢ã¯ã»ã¹å¯èœãªãµãããããã¢ããªã±ãŒã·ã§ã³ãµãŒããŒãããŒã¿ããŒã¹ã«ãããŠã§ããµãŒããŒãããããªãã¯ã«ã¢ã¯ã»ã¹ã§ããªããµããããå
ã§èµ·åã§ããŸããã¢ããªã±ãŒã·ã§ã³ãµãŒããŒãããŒã¿ããŒã¹ã«ã€ã³ã¿ãŒãããããçŽæ¥ã¢ã¯ã»ã¹ããããšã¯ã§ããŸããããã ããäŸãã° NAT ã²ãŒããŠã§ã€çµç±ã§ã€ã³ã¿ãŒãããã«ã¢ã¯ã»ã¹ããŠããããããŠã³ããŒãããããšãªã©ã¯å¯èœã§ãããããã¯ãŒã¯ã®ã¢ã¯ã»ã¹ã³ã³ãããŒã«ãªã¹ãããã³ã»ãã¥ãªãã£ã°ã«ãŒããæäŸããåä¿¡ã»éä¿¡ãã±ããã®ãã£ã«ã¿ãªã³ã°ã䜿çšããŠããµãŒããŒãšãµããããéã®ã¢ã¯ã»ã¹ãã³ã³ãããŒã«ããããšãã§ããŸãããã®äœ¿çšäŸã«å¯Ÿå¿ãã VPC ãäœæããã«ã¯ãAmazon VPC ã³ã³ãœãŒã«ãŠã£ã¶ãŒãã§ [ãããªãã¯ãšãã©ã€ããŒã ãµãããããæã€ VPC] ãéžæããŸãã
ããŒã¿ã»ã³ã¿ãŒã«æ¥ç¶ããã AWS ã¯ã©ãŠãã§ã¹ã±ãŒã©ãã«ãªãŠã§ãã¢ããªã±ãŒã·ã§ã³ããã¹ã
ãŠã§ããµãŒããŒãªã©ãäžæ¹ã®ãµããããå
ã®ã€ã³ã¹ã¿ã³ã¹ãã€ã³ã¿ãŒããããšéä¿¡ããã¢ããªã±ãŒã·ã§ã³ãµãŒããŒãªã©ãããäžæ¹ã®ãµããããå
ã®ã€ã³ã¹ã¿ã³ã¹ãäŒæ¥ãããã¯ãŒã¯äžã®ããŒã¿ããŒã¹ãšéä¿¡ãã VPC ãäœæããããšãã§ããŸããVPC ãšäŒæ¥ãããã¯ãŒã¯éã® IPsec VPN æ¥ç¶ã«ãããã¯ã©ãŠãå
ã®ã¢ããªã±ãŒã·ã§ã³ãµãŒããŒãšããŒã¿ã»ã³ã¿ãŒå
ã®ããŒã¿ããŒã¹éã®ãã¹ãŠã®éä¿¡ãä¿è·ãããŸããVPC å
ã®ãŠã§ããµãŒããŒãšã¢ããªã±ãŒã·ã§ã³ãµãŒããŒã¯ãAmazon EC2 ã®äŒžçž®æ§ãš Auto Scaling æ©èœã掻çšããŠãå¿
èŠã«å¿ããŠæ¡å€§çž®å°ãããããšãã§ããŸããAmazon VPC ã³ã³ãœãŒã«ãŠã£ã¶ãŒãã§ [ãããªãã¯ãšãã©ã€ããŒã ãµããããããã³ããŒããŠã§ã¢ VPN ã¢ã¯ã»ã¹ãæã€ VPC] ãéžæããŠããã®äœ¿çšäŸã«å¯Ÿå¿ãã VPC ãäœæããããšãã§ããŸãã
äŒæ¥ãããã¯ãŒã¯ãã¯ã©ãŠãã§æ¡åŒµ
äŒæ¥å
ã¢ããªã±ãŒã·ã§ã³ãã¯ã©ãŠãã«ç§»è¡ãã瀟å
ãããã¯ãŒã¯ã« VPC ãæ¥ç¶ããããšã«ãããããå€ãã®ãŠã§ããµãŒããŒãèµ·åããããå€ãã®ã³ã³ãã¥ãŒãèœåããããã¯ãŒã¯ã«è¿œå ããããšãã§ããŸããVPC ã¯äŒæ¥ã®ãã¡ã€ã¢ãŠã©ãŒã«ã®å
åŽã§ãã¹ãããããšãå¯èœãªããããããã®ã¢ããªã±ãŒã·ã§ã³ã«å¯ŸãããŠãŒã¶ãŒã®ã¢ã¯ã»ã¹æ¹æ³ã倿Žããããšãªããã·ãŒã ã¬ã¹ã« IT ãªãœãŒã¹ãã¯ã©ãŠãã«ç§»è¡ããããšãã§ããŸããAmazon VPC ã³ã³ãœãŒã«ãŠã£ã¶ãŒãã§ [1ã€ã®ãã©ã€ããŒã ãµããããã®ã¿ãããã³ããŒããŠã§ã¢ VPN ã¢ã¯ã»ã¹ãæã€ VPC] ãéžæããŠããã®äœ¿çšäŸã«å¯Ÿå¿ãã VPC ãäœæããããšãã§ããŸãã
çœå®³å¯Ÿç
Amazon Elastic Block StoreïŒEBSïŒããªã¥ãŒã ã§ãããŒã¿ã»ã³ã¿ãŒã®ããã·ã§ã³ã¯ãªãã£ã«ã«ãªããŒã¿ãæ°å°ã® Amazon EC2 ã€ã³ã¹ã¿ã³ã¹ã«å®æçã«ããã¯ã¢ããã§ããŸãããŸã㯠Amazon EC2 ã«ä»®æ³ãã·ã³ã€ã¡ãŒãžãã€ã³ããŒãã§ããŸããã客æ§ã®ããŒã¿ã»ã³ã¿ãŒã§ã®é害çºçæã«ã¯ãAWS ã§è¿
éã«ä»£ããã®ãã¹ããèµ·åã§ããããžãã¹ã確å®ã«ç¶ç¶ããããšãã§ããŸããé害ã解決ããããéèŠããŒã¿ãããŒã¿ã»ã³ã¿ãŒã«éãè¿ããäžèŠãª Amazon EC2 ã€ã³ã¹ã¿ã³ã¹ãçµäºã§ããŸããAmazon VPC ãçœå®³åŸ©æ§ã«äœ¿çšãããšãããããªè²»çšã§ãã£ã¶ã¹ã¿ãªã«ããªãµã€ãã®ãã¹ãŠã®æ©æµãåããããšãã§ããŸãã
Amazon VPC ã®äœ¿çšãéå§ãã
ã客æ§ã® AWS ãªãœãŒã¹ã¯ãã客æ§å°çšã«äœæãããããã«å©çšã§ããããã©ã«ã VPC å ãžèªåçã«ããããžã§ãã³ã°ãããŸãããã® VPC ã¯æ§æã倿Žã§ãããµããããã®è¿œå ãåé€ããããã¯ãŒã¯ã²ãŒããŠã§ã€ã®ã¢ã¿ãããããã©ã«ãã«ãŒãããŒãã«ã®å€æŽããããã¯ãŒã¯ ACL ã®ä¿®æ£ãå¯èœã§ãã
远å ã® VPC ãäœæããã«ã¯ãAWS ãããžã¡ã³ãã³ã³ãœãŒã«ã® Amazon VPC ã®ããŒãžã§ Start VPC Wizard ãã¿ã³ãéžæããŸãã4 ã€ã®åºæ¬ãããã¯ãŒã¯ããããžãŒã衚瀺ãããŸããäœæããããããã¯ãŒã¯ããããžãŒã«æãè¿ããã®ãéžæããVPC äœæãã¿ã³ãã¯ãªãã¯ããŸããVPC ãäœæããããšãVPC ã§ Amazon EC2 ã€ã³ã¹ã¿ã³ã¹ãèµ·åããŠéå§ã§ããŸãã
AWS ã¯ã©ãŠãã®éå§æ¹æ³
AWS ã¢ã«ãŠã³ãã«ãµã€ã³ã¢ãããã
AWS ã§æ§ç¯ãéå§ãã
Amazon VPC ã®è©³çް

