Networking

Private, Isolated Networking for Your Infrastructure

Full control over IP space, routing, and security. Build multi-tier architectures with zero internet exposure where your workload requires it.

Complete Network Isolation

Each VPC is a private address space. Instances inside are invisible to the internet until you explicitly expose them.

Custom Routing & VPN

Bring your own CIDR, configure static routes, and bridge your on-premise network via IPsec site-to-site VPN.

Layer 4 Security Groups

Stateful firewall rules scoped per instance. Allow only the ports and protocols your application actually needs.

What You Get

Private subnets and VPCs
Custom routing tables
Security groups
Floating IP addresses
VPN connectivity
Network isolation

Best For

Multi-tier applicationsHybrid cloud setupsSecure environmentsMicroservices

Create private networks with complete control over IP addressing, routing, and security. Connect instances securely with VPCs and subnets.

Technical Specifications

VPCs per organisation
Unlimited
Subnets per VPC
Up to 100
Private IP ranges
RFC 1918 - any /8–/28
Floating IPs
Elastic public addresses
VPN
IPsec site-to-site
Routing protocol
Static + BGP peering

How It Works

1

Create a VPC

Define your IP address range and the availability zone for the private network.

2

Add subnets

Segment your address space into subnets for each tier - web, application, database.

3

Attach instances

Connect compute instances and services to the appropriate subnet with private IPs.

4

Configure security and routing

Set firewall rules, assign floating IPs for public access, and add VPN for hybrid connectivity.

Common Use Cases

Multi-Tier Architecture

Separate web, application, and database tiers into isolated subnets with controlled inter-tier traffic policies.

3-tier web applicationsMicroservice meshesInternal API gateways

Hybrid Cloud

Extend your on-premise data centre network into the cloud via VPN for seamless private connectivity.

Site-to-site VPN tunnelsActive Directory extensionPrivate development environments

Compliance Isolation

Keep regulated workloads in completely private subnets with no direct internet access and full routing audit.

PCI-DSS scoped network zonesGDPR workload isolationNIS2 audit-ready environments

Need the Right Starting Point?

Tell us what you run today and we will recommend the smallest viable setup.