Skip to main content
Aviatrix Distributed Cloud Firewall (DCF) can inspect east-west traffic between spoke VPCs and VNets without requiring you to redesign your existing network.

Transparent DCF Protection with AWS Transit Gateway

For AWS environments that already route spoke-to-spoke traffic through a user-managed AWS Transit Gateway (TGW), Transparent DCF Protection (also called Bump-in-the-Wire, or BITW) inserts Aviatrix spoke gateways into the traffic path through automated route programming. There is no TGW replacement, no re-IP, and no downtime. See Transparent DCF Protection with AWS Transit Gateway .