Virtual Private Cloud (VPC)
A virtual private cloud (VPC) is a logically isolated network inside a public cloud where an organisation defines its own IP ranges, subnets, routing and firewall rules to control how its resources communicate.
A virtual private cloud (VPC) is a logically isolated virtual network within a public cloud in which an organisation runs its resources. The customer defines IP address ranges, divides them into subnets and controls traffic with route tables, gateways, security groups and network access control lists. Public subnets can reach the internet through an internet gateway, while private subnets reach it only outbound through network address translation, or not at all. AWS and Google Cloud use the term VPC, and Microsoft Azure calls the equivalent a virtual network (VNet).
VPCs are the foundation of cloud network architecture and security. They separate environments such as production and development, keep databases and internal services off the public internet and connect to on-premise sites through VPNs or dedicated links. Peering, transit gateways and private endpoints connect VPCs to each other and to managed services without traversing the internet.
Good VPC design plans non-overlapping address ranges early, because overlapping ranges block later peering and hybrid connections. Security groups should follow least privilege, and flow logs should be enabled for troubleshooting and security monitoring. A VPC provides network isolation but not complete protection on its own; identity controls, encryption and monitoring are still required, in line with zero trust principles.
Key points
- Customers define address ranges, subnets, route tables, gateways and security groups
- Microsoft Azure calls the equivalent construct a virtual network (VNet)
- Private subnets keep databases and internal services off the public internet
- Overlapping address ranges block later peering and hybrid connectivity
Where AiVibe comes in
AiVibe Software Services delivers cloud solutions on AWS, Microsoft Azure, Google Cloud or on-premise, together with cloud security, legacy modernisation, data analytics and AI and machine learning services.
Related terms
- Hybrid CloudCloud & AI Infrastructure
- Identity and Access Management (IAM)Cloud & AI Infrastructure
- Shared Responsibility ModelCloud & AI Infrastructure
- Zero Trust Architecture (ZTA)Cybersecurity & Compliance
- Infrastructure as a Service (IaaS)Cloud & AI Infrastructure
- Load BalancingCloud & AI Infrastructure