Home icon

Dive Deep into the AWS Transform Network Migration Agent: Hub and Spoke Network Setup

Migration and Modernization Blog



This article guides users through customizing a hub and spoke network topology deployed by AWS Transform, covering firewall deployment, east-west routing, outbound internet access, and inbound application publishing.

  • Deploy a firewall in the Inspection VPC using AWS Network Firewall or third-party appliances from AWS Marketplace
  • Enable east-west traffic between spoke VPCs by adding firewall rules and updating security groups
  • Configure outbound internet access by routing through the Outbound VPC with NAT gateways and return paths
  • Publish internet-facing applications through the Inbound VPC using load balancers with Transit Gateway routing
  • Validate network paths using Reachability Analyzer and firewall logs before production deployment

AWS Transform automates baseline hub and spoke network deployment, while users customize routing and firewall inspection to match their security requirements and business needs.



Go to article

The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.

Related articles

Mar 20
2026
Automate large scale network migration using AWS Transform Network Migration APIs
Sep 24
2026
Migrate faster with AWS Transform and your AI coding agent
May 25
2026
AWS Transform now modernizes networks during migrations
Aug 28
2026
Build your own continuous modernization pipeline with AWS Transform custom

The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.