AWS PrivateLink announces Tunnel Endpoints to access network segments

AWS PrivateLink Tunnel Endpoints
AWS PrivateLink customers can now use VPC endpoints to privately and securely access network segments in another VPC/account. A new type of VPC endpoint, the 'tunnel' endpoint, allows tunneling into the network segment to access resources within it.
This highly available and scalable technology enables private access across VPC and account boundaries to load balanced services, appliances, and resources such as databases and domains. Customers can now share resources with external vendors by creating a Resource Configuration to represent a CIDR range in their network and sharing it via AWS Resource Access Manager (RAM). Vendors can then create a tunnel endpoint and use GENEVE encapsulation to tunnel into the customer’s VPC to access resources in the specified CIDR range.
What to do
- Create a Resource Configuration to represent a CIDR range in your network.
- Share the Resource Configuration with a vendor via AWS RAM.
- The vendor creates a tunnel endpoint and uses GENEVE encapsulation to tunnel into your VPC.
- Charges:
- Hourly charge for the tunnel endpoint.
- Per-GB charge for data processed through it.
Available in the following AWS Regions: US East (N. Virginia), US East (Ohio), US West (N. California), US West (Oregon), Africa (Cape Town), Asia Pacific (Hong Kong), Asia Pacific (Hyderabad), Asia Pacific (Jakarta), Asia Pacific (Malaysia), Asia Pacific (Melbourne), Asia Pacific (Mumbai), Asia Pacific (Osaka), Asia Pacific (Seoul), Asia Pacific (Singapore), Asia Pacific (Sydney), Asia Pacific (Tokyo), Canada (Central), Canada West (Calgary), Europe (Frankfurt), Europe (Ireland), Europe (London), Europe (Milan), Europe (Paris), Europe (Spain), Europe (Stockholm), Europe (Zurich), Mexico (Central), South America (São Paulo).
Source: AWS release notes
If you need further guidance on AWS, our experts are available at AWS@westloop.io. You may also reach us by submitting the Contact Us form.



