- Newest
- Most votes
- Most comments
Hello,
In regards to your query description, below are the points to be noted:
The discovery process runs in a private subnet but needs to make calls to ~13 AWS services using the AWS SDK. Not all of these services have private link and even if they did, adding private link for each of these services would add ~$100 per month to the cost of running the solution. As such this means we need to have NAT Gateways so processed running in the private subnet can access the internet. These NAT Gateways must run in public subnets.
You cannot currently deploy the solution to an existing VPC. This will be a feature of v2.1.0 that is currently in development (in fact, the feature has already been implemented) but as you can see from our GitHub milestone we are very far from finished development of this version.
In regards to the query: is it possible to pivot this traffic over to existing IGW/NAT?
Please understand that you could change the cloud formation to use an existing vpc by hardcoding the subnet ids into the template too but then you'd have to maintain a custom version of the installation scripts.
You can refer the below GitHub link for the same: https://github.com/aws-solutions/workload-discovery-on-aws/pull/383
Please note that you have more concerns and queries regarding this, I would request you to raise a support case with the cloudformation team who is the best one to answer such related queries.
Adding on to this, for your reference you can go through the below documents with respect to cloudFormation functionalities: References:
Bringing existing resources into CloudFormation management: https://docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/resource-import.html
Importing existing resources into a stack: https://docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/resource-import-existing-stack.html
Resources that support import and drift detection operations: https://docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/resource-import-supported-resources.html
==================================================
Relevant content
- asked a year ago
- asked a year ago
- AWS OFFICIALUpdated 2 years ago
- AWS OFFICIALUpdated 7 months ago
- AWS OFFICIALUpdated 2 years ago
- AWS OFFICIALUpdated a year ago