| ▲ | viraptor 13 hours ago | |||||||||||||||||||||||||
The service gateways are such a weird thing in AWS. There seems to be no reason not to use them and it's like they only exist as a trap for the unaware. | ||||||||||||||||||||||||||
| ▲ | wiether 12 hours ago | parent | next [-] | |||||||||||||||||||||||||
Reading all the posts about people who got bitten by some policies on AWS, I think they should create two modes: - raw - click-ops Because, when you build your infra from scratch on AWS, you absolutely don't want the service gateways to exist by default. You want to have full control on everything, and that's how it works now. You don't want AWS to insert routes in your route tables on your behalf. Or worse, having hidden routes that are used by default. But I fully understand that some people don't want to be bothered but those technicalities and want something that work and is optimized following the Well-Architected Framework pillars. IIRC they already provide some CloudFormation Stacks that can do some of this for you, but it's still too technical and obscure. Currently they probably rely on their partner network to help onboard new customers, but for small customers it doesn't make sense. | ||||||||||||||||||||||||||
| ||||||||||||||||||||||||||
| ▲ | benmmurphy 10 hours ago | parent | prev [-] | |||||||||||||||||||||||||
the gateway endpoints are free (s3 + dynamodb?), but the service endpoints are charged so that could be a reason why people don't use the service endpoints. but there doesn't seem to be a good reason for not using the service gateways. it also seems crazy that AWS charges you to connect to their own services without a public ip. also, i guess this would be less of an issue (in terms of requiring a public ip) if all of AWS services were available over ipv6. because then you would not need NAT gateways to connect to AWS services when you don't have a public ipv4 ip and I assume you are not getting these special traffic charges when connecting to the AWS services with a public ipv6 address. | ||||||||||||||||||||||||||