slug: amazon-vpc provider: Amazon VPC generated_by: planning/capability-mapping/scripts/classify_capabilities.py model: claude-opus-5 frame: - Telecommunications min_confidence: 0.7 capability_model: source: https://github.com/vincentmakes/turbo-ea-capabilities license: CC-BY-4.0 attribution: Turbo EA Capabilities by Vincent Verdet — Turbo EA, https://github.com/vincentmakes/turbo-ea-capabilities, CC BY 4.0 notice: NOTICE edge_count: 6 edges: - tag: Internet Gateways spec_file: amazon-vpc-internet-gateways-api-openapi.yml capability_id: BC-600.50 capability_id_l1: BC-600 capability_name: IT Infrastructure Management confidence: 0.85 evidence: Amazon VPC Create an Internet Gateway ... Attach an Internet Gateway to a VPC reason: Provisioning of virtual network gateways within a cloud VPC — enterprise cloud/network infrastructure management, not telecom network operations. - tag: NAT Gateways spec_file: amazon-vpc-nat-gateways-api-openapi.yml capability_id: BC-600.50 capability_id_l1: BC-600 capability_name: IT Infrastructure Management confidence: 0.85 evidence: Amazon VPC Create a NAT Gateway ... Describe NAT Gateways reason: Creation and inspection of NAT gateways in a virtual private cloud — cloud network infrastructure management (BC-600.50). - tag: VPCs spec_file: amazon-vpc-vpcs-api-openapi.yml capability_id: BC-600.50 capability_id_l1: BC-600 capability_name: IT Infrastructure Management confidence: 0.8 evidence: '"Amazon VPC Create a VPC", "Amazon VPC Modify a VPC Attribute"; schema "Vpc"' reason: Creating and modifying virtual private clouds is provisioning of cloud network infrastructure — IT Infrastructure Management. - tag: Route Tables spec_file: amazon-vpc-route-tables-api-openapi.yml capability_id: BC-600.50 capability_id_l1: BC-600 capability_name: IT Infrastructure Management confidence: 0.78 evidence: '"Amazon VPC Create a Route Table", "Amazon VPC Associate a Route Table with a Subnet"; schema "RouteTable"' reason: Managing routing constructs of an AWS virtual private cloud is cloud/network infrastructure provisioning, mapped to IT Infrastructure Management. Not carrier-grade telecom network configuration. - tag: Subnets spec_file: amazon-vpc-subnets-api-openapi.yml capability_id: BC-600.50 capability_id_l1: BC-600 capability_name: IT Infrastructure Management confidence: 0.78 evidence: '"Amazon VPC Create a Subnet", "Amazon VPC Delete a Subnet"; schema "Subnet"' reason: Subnet lifecycle within a cloud virtual network is compute/network infrastructure management for IT, i.e. BC-600.50. - tag: Network ACLs spec_file: amazon-vpc-network-acls-api-openapi.yml capability_id: BC-600.50 capability_id_l1: BC-600 capability_name: IT Infrastructure Management confidence: 0.75 evidence: '"Amazon VPC Create a Network ACL" / "Amazon VPC Describe Network ACLs" — "provision a logically isolated section of the AWS Cloud ... in a virtual network that you define"' reason: Operations create and list network access control lists inside a cloud virtual network. This is provisioning of cloud network infrastructure (IT Infrastructure Management), not telecom carrier network operations and not enterprise security governance.