AWS Client VPN: Connected with the Cloud

Andreas Wittig – 18 Feb 2021

Everybody talks about remote work those days. A fundamental prerequisite is to provide secure connectivity to your infrastructure. No matter if only a few engineers or users need to access resources within a private network. About two years ago, AWS announced AWS Client VPN, a managed client-based VPN service that allows you to connect users with your VPCs. Over the past two years, the service matured and is worth a look.

AWS Client VPN: Connected with the Cloud

What does AWS Client VPN offer?

  • Managed VPN service based on OpenVPN
  • Secure client-to-site connections (TLS)
  • Multi-AZ + Scales automatically
  • Active Directory, federated authentication (SAML), and certificate-based authentication

By the way, AWS Client VPN starts at USD 150 per month.

Andreas and Michael Wittig

Hej, Andreas & Michael here!

We launched the cloudonaut blog in 2015. Since then, we have published 325 articles: small tips and tricks, best practices, and service reviews. We enjoy writing about all things AWS a lot.

Do you like our blog posts and podcast episodes? Have you learned something new? Consider supporting us create in-depth and independent AWS content. Please help us with a monthly or one-time payment through GitHub Sponsors.

Start supporting us today!

What surprised me the most? AWS Client VPN supports SAML for federated authentication. For example, it is possible to integrate with Azure Active Directory to re-use existing users and groups for authentication and authorization into your VPCs via VPN.

AWS Client VPN with Azure Active Directory for authN and authZ

Watch the video

Want to learn more about AWS Client VPN? The following video includes a demo of how to configure AWS Client VPN and Azure Active Directory, among other things.

Summary

It is about time to replace handcrafted EC2 instances running VPN servers with AWS Client VPN. Also, AWS Client VPN is the perfect way to connect your remote workers with the Cloud.

Tags: aws vpc network vpn
Andreas Wittig

Andreas Wittig

I'm an independent consultant, technical writer, and programming founder. All these activities have to do with AWS. I'm writing this blog and all other projects together with my brother Michael.

In 2009, we joined the same company as software developers. Three years later, we were looking for a way to deploy our software—an online banking platform—in an agile way. We got excited about the possibilities in the cloud and the DevOps movement. It’s no wonder we ended up migrating the whole infrastructure of Tullius Walden Bank to AWS. This was a first in the finance industry, at least in Germany! Since 2015, we have accelerated the cloud journeys of startups, mid-sized companies, and enterprises. We have penned books like Amazon Web Services in Action and Rapid Docker on AWS, we regularly update our blog, and we are contributing to the Open Source community. Besides running a 2-headed consultancy, we are entrepreneurs building Software-as-a-Service products.

We are available for projects.

Feedback? Questions? Drop me a line: Email, Twitter, LinkedIn.

Briefcase icon
Hire me