Create a Basic VPC and Associated Components in AWS

45 minutes
  • 5 Learning Objectives

About this Hands-on Lab

AWS networking consists of multiple components, and understanding the relationship between the networking components is a key part of understanding the overall functionality and capabilities of AWS. In this hands-on lab, we will create a VPC with an internet gateway, as well as create subnets across multiple Availability Zones.

Learning Objectives

Successfully complete this lab by achieving the following learning objectives:

Create an Internet Gateway, and Connect It to the VPC

Create an internet gateway, and attach it to the VPC1 VPC.

Create a VPC
  1. Create a VPC from scratch (without using the VPC Wizard).
  2. Name the VPC VPC1
  3. Set the VPC CIDR to
Create a Public and Private Subnet in Different Availability Zones

Create a public and private subnet in different Availability Zones using the following IP CIDR addresses:

  • Public1 subnet in us-east-1a:
  • Private1 subnet in us-east-1b:
Create Two Route Tables, and Associate Them with the Correct Subnet

Note: The VPC has a default route table, but we will be creating custom route tables.

  1. Create two route tables:
    • One for the public subnet named PublicRT with an internet gateway route
    • One for the private subnet named PrivateRT without an internet gateway route
  2. For the public route table, create a default route to the internet using the CIDR notation.
Create Two Network Access Control Lists (NACLs), and Associate Each with the Proper Subnet
  1. Create a public NACL named Public_NACLwith inbound rules allowing HTTP and SSH traffic, as well as an outbound rule allowing TCP traffic on port range 1024-65535.

  2. Associate the public NACL with the public subnet.

  3. Create a private NACL named Private_NACLwith an inbound rule allowing SSH traffic with a source of, as well as an outbound rule allowing TCP traffic on port range 1024-65535.

  4. Associate the private NACL with the private subnet.

Additional Resources

Use the credentials provided to log in to the AWS Management Console. Make sure you are in the us-east-1 region.

What are Hands-on Labs

Hands-on Labs are real environments created by industry experts to help you learn. These environments help you gain knowledge and experience, practice without compromising your system, test without risk, destroy without fear, and let you learn from your mistakes. Hands-on Labs: practice your skills before delivering in the real world.

Sign In
Welcome Back!

Psst…this one if you’ve been moved to ACG!

Get Started
Who’s going to be learning?