The following diagram depicts the AWS Managed Services (AMS) single-account landing zone (SALZ) VPC network layout and is an example of the highly available setup.


AMS configures all aspects of networking for you based on our standard templates and
your selected options provided during onboarding. A standard AWS network design is applied
to your AWS account, and a virtual private cloud (VPC) is created for you and connected to
AMS by either VPN or Direct Connect. Learn more about Direct Connect at
AWS Direct Connect
Note
To learn about default service limits and constraints for all active services, see the AWS Service Limits documentation.
Our network design is built around the Amazon
"Principle of Least Privilege"