amazon-vpc

How to publish to SNS from Lambda within VPC using VPC Endpoint?

牧云@^-^@ 提交于 2021-01-27 05:29:32
问题 I have set up a VPC with 3 subnets, this to have access to a private RDS instance from my Lambda functions. The RDS <-> Lambda connection works fine, however now I'm not able to publish to SNS. I found the announcement of VPC Endpoint support for SNS (incl. this blog post https://aws.amazon.com/blogs/security/securing-messages-published-to-amazon-sns-with-aws-privatelink/) and have added a VPC Endpoint Interface with these properties: Service name: com.amazonaws.eu-west-1.sns VPC: same as

How to publish to SNS from Lambda within VPC using VPC Endpoint?

走远了吗. 提交于 2021-01-27 05:28:56
问题 I have set up a VPC with 3 subnets, this to have access to a private RDS instance from my Lambda functions. The RDS <-> Lambda connection works fine, however now I'm not able to publish to SNS. I found the announcement of VPC Endpoint support for SNS (incl. this blog post https://aws.amazon.com/blogs/security/securing-messages-published-to-amazon-sns-with-aws-privatelink/) and have added a VPC Endpoint Interface with these properties: Service name: com.amazonaws.eu-west-1.sns VPC: same as

Amazon VPC NACL default rules evaluation order

与世无争的帅哥 提交于 2020-12-05 11:14:26
问题 With my understanding, NACL (Network Access Control List) is the subnet firewall. I'm trying to understand what are the defaults when creating a NACL: Rule #100 - all ports from all IPs are allowed by default, otherwise All is denied So, bottom line, is all allowed or denied? I know that according to AWS best practices, all access should be disabled by default. 回答1: The rules are evaluated in number order. As soon as the traffic matches the rule, the Allow/Deny is applied and evaluation ends.

Amazon VPC NACL default rules evaluation order

此生再无相见时 提交于 2020-12-05 11:14:21
问题 With my understanding, NACL (Network Access Control List) is the subnet firewall. I'm trying to understand what are the defaults when creating a NACL: Rule #100 - all ports from all IPs are allowed by default, otherwise All is denied So, bottom line, is all allowed or denied? I know that according to AWS best practices, all access should be disabled by default. 回答1: The rules are evaluated in number order. As soon as the traffic matches the rule, the Allow/Deny is applied and evaluation ends.

Amazon VPC NACL default rules evaluation order

♀尐吖头ヾ 提交于 2020-12-05 11:13:18
问题 With my understanding, NACL (Network Access Control List) is the subnet firewall. I'm trying to understand what are the defaults when creating a NACL: Rule #100 - all ports from all IPs are allowed by default, otherwise All is denied So, bottom line, is all allowed or denied? I know that according to AWS best practices, all access should be disabled by default. 回答1: The rules are evaluated in number order. As soon as the traffic matches the rule, the Allow/Deny is applied and evaluation ends.