Configure the interface endpoint on the AWS console
Configure the interface endpoint on the AWS console
On the AWS console, select a service of the interface type, select the VPC, the private subnet, the security group, and add the policy for the interface endpoint.
Perform the following steps on the AWS console to configure an interface endpoint:
Log in to the
AWS Console
, and navigate to the region where you want to create endpoints.
On the
Search
tab, search for VPC.
The VPC dashboard appears.
Click
Endpoints
.
Click
Create endpoint
.
The
Create endpoint page
appears.
Enter a name for the S3 interface endpoint.
Select
AWS services
as the service category.
In
Services
, search for S3, and select a service of the interface type.
To configure the STS VPC endpoint, search for the STS service. To configure the KMS VPC endpoint, search for the KMS service.
The following image shows the S3 service:
From the list, select the VPC where you want to create the endpoint.
Click
Additional settings
, and clear the
Enable DNS name
check box.
Select the private subnet that you created.
Select the security group.
Select
Custom
or
Full access
policy based on your requirement, and paste the policy in the text box.
For the minimal Amazon IAM policy, see the Amazon S3 V2 Connector guide.
Click
Create endpoint
.
The interface endpoint is created.
Go back to the
Endpoints
page to view the details of the interface endpoint.
Copy the DNS name of the interface endpoint.
You need to enter the DNS name in the
Endpoint DNS Name for Amazon S3
connection property in Cloud Data Integration in the following format:
bucket.<DNS name of the interface endpoint>
The following image shows the DNS name of the interface endpoint:
If you configure the STS VPC interface endpoint, you need to enter the DNS name in the
Endpoint DNS Name for AWS STS service
connection property in Cloud Data Integration.
The following image shows the DNS name of the STS VPC interface endpoint:
If you configure the KMS VPC interface endpoint, you need to enter the DNS name in the
Endpoint DNS Name for AWS KMS service
connection property in Cloud Data Integration.
The following image shows the DNS name of the KMS VPC interface endpoint: