Private Network Only VPC with Transit Gateway and Egress VPC

Tips and Traps

Zhimin Wen
9 min readApr 7, 2024


I have a AWS environment that requires to have private subnet only for the application VPC, all the internet bound traffic has to go through on-premise firewalls.

Let’s simulate this setup on AWS with a egress VPC and Transit Gateway.

Application VPC