Загрузка...

AWS Lambda inside vs outside a VPC — what actually happens to your traffic

This video breaks down AWS Serverless Network Architecture diagrams, focusing on how Lambda functions interact within a VPC and across different AWS accounts. We explore the critical role of VPC endpoints for private communication with AWS services like S3 and Kinesis, ensuring secure and efficient data flow. Understanding this AWS networking setup is key for robust cross account access and optimal AWS architecture.

Most engineers don't realize: the moment you put Lambda in a VPC, it loses access to every AWS service. S3, SQS, Kinesis, KMS — all gone unless you add VPC endpoints.

This carousel shows the 3 levels:

1️⃣ Lambda outside VPC — can reach AWS services, can't reach RDS
2️⃣ Lambda inside VPC with endpoints — can reach everything privately, no internet needed
3️⃣ Cross-account via Transit Gateway — Lambda in Account A reaches Kinesis in Account B, fully private

The one endpoint everyone forgets: KMS. If your data is encrypted (SSE-KMS), Lambda's SDK calls kms:Decrypt behind the scenes. No KMS endpoint = silent timeout.

Swipe through ↓

What's the hardest Lambda networking issue you've debugged?

#AWS #Lambda #VPC #VPCEndpoints #CloudArchitecture #DevOps #AWSLambda #TransitGateway #CloudComputing #Serverless #AWSCloud #SoftwareEngineering #CodingTips #LearnOnTikTok #BuildInPublic #BuildInPublic #TransitGW #CrossAccount hashtag#IAM #S3 #Kinesis #DLQ #Deadletterqueue #STS #CloudNetwork #Networking #Privatelink #AWSBackbone #AWSNetwork #TransitGateway #AWSCrossAccount #troubleshooting

Видео AWS Lambda inside vs outside a VPC — what actually happens to your traffic канала YV Labs by Vidh Yasa
Яндекс.Метрика
Все заметки Новая заметка Страницу в заметки
Страницу в закладки Мои закладки
На информационно-развлекательном портале SALDA.WS применяются cookie-файлы. Нажимая кнопку Принять, вы подтверждаете свое согласие на их использование.
О CookiesНапомнить позжеПринять