Loading...
Loading...
Configures AWS Transit Gateway: creating a hub and attaching VPCs, segmenting traffic with route tables, centralizing egress and inspection through a hub (appliances or a Gateway Load Balancer endpoint), forcing east-west traffic between VPCs through AWS Network Firewall, connecting on-premises networks over the transit-gateway side of a Site-to-Site VPN or Direct Connect attachment (including ECMP to aggregate bandwidth across multiple VPN tunnels), peering transit gateways across Regions, migrating from a VPC peering mesh, and routing IP multicast. Applicable when connecting many VPCs through one router, isolating environments, forcing VPC-to-VPC traffic through a central Network Firewall, reaching on-premises over the hub, linking Regions, or moving off a peering mesh. Not applicable for single-VPC routing, VPC peering between two VPCs (vpcpeering skill), Direct Connect gateway or virtual interface setup (directconnect skill), or Route 53 DNS work.
npx skill4agent add aws/agent-toolkit-for-aws transitgatewayreferences/aws ec2| Goal | Reference |
|---|---|
| Create a Regional hub and connect VPCs to it | creating a transit gateway and attaching VPCs |
| Isolate some VPCs while letting others share services | segmenting traffic with route tables |
| Send all spoke traffic out through one inspected egress VPC | centralizing egress and inspection |
| Inspect traffic between VPCs with AWS Network Firewall | inspecting east-west traffic with Network Firewall |
| Reach on-premises networks over Site-to-Site VPN or Direct Connect | connecting on-premises networks |
| Link transit gateways in two Regions over the AWS network | peering transit gateways across Regions |
| Move off a VPC peering mesh without dropping traffic | migrating from VPC peering |
| Distribute IP multicast across attached VPCs | routing multicast traffic |
directconnectaws:SourceArnaws:SourceAccountkms:ViaService