Architect resilient, secure, and cost-effective cloud network topologies using research-backed patterns for VPCs, subnets, and routing.
This skill acts as your AI CTO co-pilot for infrastructure design, ensuring your cloud network is built correctly before the first compute resource is deployed. It provides specialized guidance on CIDR planning, multi-AZ subnet tiering, and routing strategies that prevent common architectural debt. By following these opinionated principles, you can ensure your network supports future VPC peering, minimizes NAT gateway costs, and maintains a high security posture through physical subnet isolation and private service endpoints.
Key Features
019 GitHub stars
02Cost-optimized NAT gateway strategies specifically designed for startup and growth phases
03Private connectivity endpoint patterns for secure, high-throughput cloud service access
04Internal and external DNS zone strategies for environment-agnostic service discovery
05Non-overlapping CIDR block planning for seamless environment peering and multi-region scaling
06Standardized 3-tier subnet architecture (Public, Private, Database) with multi-AZ distribution
Use Cases
01Designing a production-ready VPC for a new SaaS product from scratch
02Planning IP address allocation to support high-density container workloads like EKS or ECS
03Refactoring existing infrastructure to isolate databases and improve security compliance