Subnet 1 (AZ: ap-southeast-1b)
CIDR: 10.1.2.0/24
🖥️ Private EC2
(Flask Backend)
t2.micro
🛡️ Security Group: private-sg
• Port 5000 ← Public EC2
• SSH (22) ← Public EC2
Flask API
→
Port 5432
→
PostgreSQL
📦 S3: Backend Files
three-tier-web-app-satya/backend
Subnet 2 (AZ: ap-southeast-1c)
CIDR: 10.1.3.0/24
🗄️ RDS PostgreSQL
(Database)
db.t3.micro
🛡️ Security Group: rds-sg
• Port 5432 ← Private EC2
• No Outbound Access