An interface endpoint is a network interface with a private IP address from the IP address range of your subnet. It serves as an entry point for traffic destined to an AWS service.
When you create an interface endpoint, additionally, you can configure an STS VPC endpoint or a KMS VPC endpoint based on your requirement.
Select the
IAM Role ARN
or
Federated SSO IdP
connection property to configure the STS VPC endpoint. Select the
Customer Master Key ID
connection property to configure the KMS VPC endpoint.