Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add option to deploy to Private Subnets for VPN Gateways when using NLB with AWS #553

Open
Merlz opened this issue Sep 2, 2020 · 1 comment
Labels

Comments

@Merlz
Copy link

Merlz commented Sep 2, 2020

When deploying an LB for VPN Gateways, there is no need to deploy the gateways to public subnets, it goes against best practices when using Load Balancers since they should be the only public facing infrastructure and forwarding to internal subnets.

As another option, if using UDP protocol and NLB with Global Accelerator, then the NLB can be in private subnets as well to keep it completely internal on AWS Networks and reduce the attack surface even further.

@CyrusJavan
Copy link
Contributor

Hi @Merlz,
I think this feature request is related to the actual Aviatrix controller product, not the Terraform provider. I've gone ahead and opened a ticket on our internal issue tracker for this request. Thank you!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

No branches or pull requests

2 participants