Understanding the Purpose of AWS CloudHub
AWS VPN CloudHub is a managed service that allows you to connect multiple AWS Site-to-Site VPN connections securely. This enables your sites to communicate with each other and not just with resources in your VPC. You can see from the following image that CloudHub allows connectivity from multiple remote locations (just like the Direct Connect gateway) but does so using VPN connections instead of Direct Connect circuits.
Figure 18.11: The hub-and-spoke model of AWS CloudHub
AWS VPN CloudHub operates on a simple hub-and-spoke model, as shown in Figure 18.11, that you can use with or without a VPC. In this approach, the VPN connection is the hub, and the remote offices act as the spokes. In the hub-and-spoke design of CloudHub, the AWS account is the hub and the remote offices are the spokes. It is more cost-effective than multiple Direct Connect connections and is extremely useful in cases where you need a redundant...