Transit GW: Using VPC Security Groups



We are looking at potentially implementing Transit GW (as opposed to VPC peering). However, one of the nice security features of VPC Peering is the ability to define Security Groups rules from another account, as referenced here:

The peer VPC can be a VPC in your account, or a VPC in another AWS account. To reference a security group in another AWS account, include the account number in Source or Destination field; for example, 123456789012/sg-1a2b3c4d.

What we like about this capability is that we can define which EC2 instances can connect to our RDS Instances in another account.

Is there an equivalent construct / design approach for TGW?


asked a month ago193 views
1 Answer
Accepted Answer

Security group referencing feature is currently not available with Transit Gateway.

Once the feature is released you will see it here:

What's New with AWS?

profile pictureAWS
answered a month ago
profile pictureAWS
reviewed a month ago
  • Do you know if its on the roadmap? Any projected timelines?


You are not logged in. Log in to post an answer.

A good answer clearly answers the question and provides constructive feedback and encourages professional growth in the question asker.

Guidelines for Answering Questions