Glossary

    VPC Endpoint

    Network Security

    A VPC Endpoint enables private connectivity between your VPC and supported AWS services without requiring an internet gateway, NAT device, VPN, or AWS Direct Connect. Traffic between your VPC and the service stays on the Amazon network.

    Types

    • Gateway endpoints: for S3 and DynamoDB; free; configured via route tables
    • Interface endpoints (PrivateLink): for 100+ services; creates an ENI in your subnet with a private IP; costs per hour + per GB

    Related AWS Services

    Toc Consulting: AWS Security & Cloud Architecture

    Securing your AWS estate?

    Our team helps engineering teams secure and architect AWS the right way: assessment in week one, a prioritized action plan in week two.