AWS, Azure, and Google Cloud networking at a conceptual, comparative level, plus hybrid cloud, site-to-site VPN, Direct Connect, ExpressRoute, and SD-WAN — everything an on-premises network engineer needs to design and troubleshoot a network that spans both worlds.
Every concept from Modules 1 through 9 — subnetting, routing, segmentation, redundancy — still applies once a workload moves to the cloud. What changes is who owns the underlay and what tools you use to see it. This module builds the concept map between AWS, Azure, and Google Cloud's networking primitives, then covers how an enterprise actually connects its on-premises network to them: VPN, dedicated interconnects, and the SD-WAN fabrics that increasingly manage both at once.
By the end of this module you should be able to explain why a VPC route table and an AWS security group are two different control points doing two different jobs, why Direct Connect exists when a site-to-site VPN already works, and how SD-WAN turns a branch's multiple WAN links and its cloud connections into one managed overlay instead of several separately administered pieces.