Friday, February 7, 2025

AWS VPC lattice to Secure and Scale Inter-VPC Architecture

Use PrivateLink, AWS VPC Lattice, EventBridge, and Step Functions to safely exchange AWS resources across VPC and account boundaries.

AWS VPC Lattice, PrivateLink, EventBridge

Every AWS customer eventually tells me that they want to go into the future as soon as feasible. As they move forward, they hope to save expenses while streamlining their modernization initiatives, spurring expansion, and adjusting to the cloud.

These clients usually have a sizable collection of legacy apps that may be on-premises and run on several technology stacks that are overseen by different departments within the company. These organizations frequently have to adhere to strict security and compliance regulations, which makes matters much more difficult.

Get Ready to Share

Now, you can use AWS resources like Amazon Elastic Compute Cloud (Amazon EC2) instances, Amazon Elastic Container Service (Amazon ECS) and Amazon Elastic Kubernetes Service (Amazon EKS) container services, and your own HTTPS services across AWS account boundaries and Amazon Virtual Private Cloud (Amazon VPC) to create event-driven apps using Amazon EventBridge and workflow orchestration using AWS Step Functions.

With all communication going through private endpoints and networks, you may link your contemporary cloud-native apps to historical on-premises systems and upgrade your current workloads.

Building on AWS PrivateLink and AWS VPC Lattice, these new capabilities provide you a plethora of additional choices for network design and control, as well as some exciting new methods to coordinate and connect across all of your technology stacks. For instance, you may utilize your current on-premises apps to create hybrid event-driven architectures.

These days, some clients move data into VPCs using Amazon Simple Queue Service (Amazon SQS) queues or AWS Lambda functions. There is now a more straightforward and effective way to replace this undifferentiated heavy lifting.

When you combine all of this, you have a suite of services that will help you streamline integration between your apps, no matter where they are located, and speed up your modernization efforts. Together with PrivateLink and AWS VPC Lattice, EventBridge and Step Functions allow you to integrate both private and public HTTPS-based apps into your event-driven workflows and architectures.

The following are the key words and ideas:

  • Resource Owner VPC: A Virtual Private Cloud with shared resources. This VPC’s owner creates a Resource Gateway with one or more related Resource Configurations, then shares the Resource Configuration with the Resource Consumer for example, another AWS account or a developer using EventBridge and Step Functions to create event-driven architectures and workflows using AWS Resource Access Manager (RAM). The person in charge of taking care of and feeding this VPC in your organisation is known as the Resource Owner. This might be you.
  • Resource Gateway: As indicated by the Resource Configurations linked to the gateway, the resource gateway serves as a point of entry to a VPC, allowing clients to access resources in the Resource Owner VPC. Multiple resources can be made available through a single Resource Gateway.
  • Amazon Elastic Kubernetes Service (Amazon EKS) services behind a network load balancer, HTTPS endpoints, databases, database clusters, EC2 instances, Application Load Balancers in front of multiple EC2 instances, ECS services discoverable via AWS Cloud Map, legacy services operating in the Resource Owner VPC, or on-premises across AWS Site-to-Site VPN or AWS Direct Connect are examples of resources.
  • A set of resources that are accessible via a certain Resource Gateway is defined by the Resource Configuration. IP addresses, DNS names, or ARNs (for AWS resources) can be used to refer to the resources.
  • The individual in charge of creating applications that connect to and utilise services offered by resources in a Resource Owner VPC is known as the Resource Consumer.
image 52 1
Image Credit To AWS

To Get To Know

Here are some details regarding these awesome new features:

  • Pricing: The per-GB fee for data movement into the VPC is included in the current pricing for Step Functions, EventBridge, PrivateLink, and AWS VPC Lattice.
  • Regions: United States East (Ohio, North Virginia), United States West (N. California, Oregon), Africa (Cape Town), Asia Pacific (Hong Kong, Mumbai, Osaka, Seoul, Singapore, Sydney, Tokyo), Canada (Central), Europe (Frankfurt, Ireland, London, Milan, Paris, Stockholm), the Middle East (Bahrain), and South America (São Paulo) are the 21 AWS regions in which Resource Gateways and Resource Configurations can be created and used.
Thota nithya
Thota nithya
Thota Nithya has been writing Cloud Computing articles for govindhtech from APR 2023. She was a science graduate. She was an enthusiast of cloud computing.
RELATED ARTICLES

Recent Posts

Popular Post

Govindhtech.com Would you like to receive notifications on latest updates? No Yes