Cisco FTDv in AWS can be deployed in two different deployment models: single-instance and cluster. In both models, the FTDv can be configured in routed mode and managed by either an FMCv installed in AWS or a physical FMC appliance on premises. The FTDv can also use Geneve encapsulation for traffic interfaces to support AWS Gateway Load Balancer (GWLB) integration. The following table summarizes the supported deployment model configurations for FTDv in AWS: Table Deployment Model Management Mode Traffic Mode Geneve Encapsulation Single-instance FMCv in AWS Routed Optional Single-instance FMC on premises Routed Optional Cluster FMCv in AWS Routed Required Cluster FMC on premises Routed Required References := * Deploy the Threat Defense Virtual on AWS - Cisco * Deploy a Threat Defense Virtual Cluster on AWS - Cisco * Configure Geneve Interfaces in Secure FTDv - Cisco * Deployment of Cisco Secure FTDv and FMCv instances in AWS - Terraform * Solved: FTD virtual appliance in AWS - Cisco Community