Why in this tutorial VPC creates NAT gateways

0

Hi All! Im following this tutorial - https://aws.amazon.com/blogs/containers/building-http-api-based-services-using-aws-fargate/

It creates NAT gateways which I don't need (the endpoints still work when NATs were deleted). How can I prevent AWS to spin them up when using CDK?

Thanks,

1 Antwort
1
Akzeptierte Antwort

In the cdk vpc constructor there are a lot of options to customise the default configuration. It is definitely possible to create without nat gateways you can supploy a subnet configuration so only private subnets are created.

eg - will create 1 private isolated subnet in each AZ and no nat gateways as there are no public subnets

new ec2.Vpc(this, 'VPC', {
   subnetConfiguration: [
  {
    cidrMask: 24,
    name: 'private',
    subnetType: ec2.SubnetType.PRIVATE_ISOLATED,
  }
]
});

Keep in mind without nat gateways your vpc will not have default outbound internet access and therefore resources cannot reach Public AWS Service Endpoints ie the fargate tasks in this blog will not be able to post cloudwatch logs unless you additionally add a cloudwatch logs vpc endpoint to the vpc.

AWS
EXPERTE
Peter_G
beantwortet vor 2 Jahren
profile picture
EXPERTE
überprüft vor einem Monat

Du bist nicht angemeldet. Anmelden um eine Antwort zu veröffentlichen.

Eine gute Antwort beantwortet die Frage klar, gibt konstruktives Feedback und fördert die berufliche Weiterentwicklung des Fragenstellers.

Richtlinien für die Beantwortung von Fragen