Amazon Cognito identity pools now support private connectivity with AWS PrivateLink

Published
December 11, 2025
https://aws.amazon.com/about-aws/whats-new/2025/12/amazon-cognito-identity-pools-private-connectivity-aws-privatelink

Amazon Cognito Identity Pools with AWS PrivateLink

Amazon Cognito identity pools now support AWS PrivateLink, enabling secure exchange of federated identities for AWS credentials through private connectivity between your VPC and Cognito. This eliminates public internet routing for authentication traffic, enhancing security for your workloads.

Identity pools map authenticated and guest identities to IAM roles, providing temporary AWS credentials via a secure and private connection.

Regions

Available in all AWS Regions except AWS China (Beijing) and AWS GovCloud (US).

Limits/Quotas

  • VPC Endpoints: Additional charges apply for creating VPC endpoints on AWS PrivateLink.

What to do

Source: AWS release notes




If you need further guidance on AWS, our experts are available at AWS@westloop.io. You may also reach us by submitting the Contact Us form.

Follow our blog

Get the latest insights and advice on AWS services from our experts.

By clicking Sign Up you're confirming that you agree with our Terms and Conditions.
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.