What Is Vpc Endpoints In Aws
A vpc endpoint enables you to privately connect your vpc to supported aws services and vpc endpoint services powered by aws privatelink without requiring an internet gateway nat device vpn connection or aws direct connect connection.
What is vpc endpoints in aws. Endpoints are horizontally scalable and highly available virtual devices that allow communication between instances in your vpc and aws services. Vpc endpoints enable you to privately connect your vpc to services hosted on aws without requiring an internet gateway a nat device vpn or firewall proxies. The default policy allows access by any user or service within the vpc using credentials from any aws account to any amazon s3 resource.
Your endpoint has a policy that controls the use of the endpoint to access amazon s3 resources. The following are the different types of vpc endpoints. Instances in your vpc do not require public ip addresses to communicate with resources in the service.
They allow communication between instances in your vpc and services without imposing availability risks. Vpc endpoint policy is an iam resource policy attached to an endpoint for controlling access from the endpoint to the specified service. An s3 vpc endpoint provides a way for an s3 request to be routed through to the amazon s3 service without having to connect a subnet to an internet gateway.
Including amazon s3 resources for an aws account other than the account with which the vpc is associated. Aws currently supports two types of endpoints vpc interface endpoints. An interface vpc endpoint interface endpoint enables you to connect to services powered by aws privatelink.
It works by adding an entry to the route table of a subnet forwarding s3 traffic to the s3 vpc endpoint. These services include some aws services services hosted by other aws customers and partners in their own vpcs referred to as endpoint services and supported aws marketplace partner services. They are horizontally scaled redundant and highly available vpc components.
Vpc endpoints are virtual devices.