top of page

๐—Ÿ๐—ฎ๐—ป๐—ฑ๐—ถ๐—ป๐—ด ๐—ญ๐—ผ๐—ป๐—ฒ ๐˜ƒ๐˜€. ๐—ง๐—ฎ๐—ฟ๐—ด๐—ฒ๐˜ ๐—ญ๐—ผ๐—ป๐—ฒ

  • dotsincloud
  • 12 minutes ago
  • 1 min read

๐—Ÿ๐—ฎ๐—ป๐—ฑ๐—ถ๐—ป๐—ด ๐—ญ๐—ผ๐—ป๐—ฒ ๐˜ƒ๐˜€. ๐—ง๐—ฎ๐—ฟ๐—ด๐—ฒ๐˜ ๐—ญ๐—ผ๐—ป๐—ฒ in Cloud Infrastructure โ€” Know the Difference!


๐Ÿญ. ๐—Ÿ๐—ฎ๐—ป๐—ฑ๐—ถ๐—ป๐—ด ๐—ญ๐—ผ๐—ป๐—ฒ

๐˜ž๐˜ฉ๐˜ข๐˜ต ๐˜ช๐˜ด ๐˜ช๐˜ต?

A Landing Zone is a pre-configured, secure, and compliant foundation to host cloud workloads. Think of it as the blueprint that defines your organizationโ€™s cloud governance.


๐˜ž๐˜ฉ๐˜บ ๐˜ช๐˜ต ๐˜ฎ๐˜ข๐˜ต๐˜ต๐˜ฆ๐˜ณ๐˜ด:

It sets guardrails for networking, security, identity, and compliance โ€” all before a single workload is deployed.


๐˜›๐˜บ๐˜ฑ๐˜ช๐˜ค๐˜ข๐˜ญ ๐˜ค๐˜ฐ๐˜ฎ๐˜ฑ๐˜ฐ๐˜ฏ๐˜ฆ๐˜ฏ๐˜ต๐˜ด:


VPCs/VNets & subnets

IAM / RBAC

Shared services (DNS, Bastion, etc.)

Logging & monitoring

Policies & compliance rules


๐˜›๐˜ฆ๐˜ณ๐˜ณ๐˜ข๐˜ง๐˜ฐ๐˜ณ๐˜ฎ ๐˜Œ๐˜น๐˜ข๐˜ฎ๐˜ฑ๐˜ญ๐˜ฆ โ€“ ๐˜ˆ๐˜ž๐˜š:


module "landing_zone" {

source = "terraform-aws-modules/vpc/aws"

name = "lz-network"

cidr = "10.0.0.0/16"

azs = ["us-east-1a", "us-east-1b"]

private_subnets = ["10.0.1.0/24", "10.0.2.0/24"]

public_subnets = ["10.0.101.0/24", "10.0.102.0/24"]

enable_nat_gateway = true

enable_dns_hostnames = true

tags = {

Environment = "landing-zone"

}

}


๐Ÿฎ. ๐—ง๐—ฎ๐—ฟ๐—ด๐—ฒ๐˜ ๐—ญ๐—ผ๐—ป๐—ฒ

๐˜ž๐˜ฉ๐˜ข๐˜ต ๐˜ช๐˜ด ๐˜ช๐˜ต?

The Target Zone is where actual business workloads are deployed โ€” web apps, databases, APIs, etc.


๐˜ž๐˜ฉ๐˜บ ๐˜ช๐˜ต ๐˜ฎ๐˜ข๐˜ต๐˜ต๐˜ฆ๐˜ณ๐˜ด:

It leverages the Landing Zoneโ€™s foundation while delivering real value through business-critical services.


๐˜›๐˜บ๐˜ฑ๐˜ช๐˜ค๐˜ข๐˜ญ ๐˜ค๐˜ฐ๐˜ฎ๐˜ฑ๐˜ฐ๐˜ฏ๐˜ฆ๐˜ฏ๐˜ต๐˜ด:


App servers (EKS, AKS, EC2, App Services)

Databases (RDS, Azure SQL)

Storage (S3, Blob)

App-specific IAM

CI/CD deployment pipelines


๐˜›๐˜ฆ๐˜ณ๐˜ณ๐˜ข๐˜ง๐˜ฐ๐˜ณ๐˜ฎ ๐˜Œ๐˜น๐˜ข๐˜ฎ๐˜ฑ๐˜ญ๐˜ฆ โ€“ ๐˜ˆ๐˜ž๐˜š:


resource "aws_instance" "web_app" {

ami = "ami-xxxxxxxxxxxxxxxxxxxx"

instance_type = "t3.micro"

subnet_id = module.landing_zone.public_subnets[0]


tags = {

Name = "target-zone-web-app"

Environment = "production"

}

}

ใ‚ณใƒกใƒณใƒˆ


Post: Blog2_Post
  • LinkedIn

ยฉ2021 by Dots in Cloud. Proudly created with Wix.com

bottom of page