AWS Config Advance Queries against Aggregator sample


It is quite convenient to use the AWS Config advance queries against the aggregator, a simple use case is like - Find out which instances in which accounts have public IP address cross the organisation. Instead of writing a script to describe instances across all the accounts, we can just simply run the following query … Continue reading AWS Config Advance Queries against Aggregator sample

Automate VPN failover via TGW attachment


Continue with my previous post Automate VPN connection and its TGW attachment, in this post I would like to share the solution for VPN failover via TGW attachment. The key components in the solution are: Network Manager for Transit GatewayEventBridgeLambda The basic idea is: Register TGW to Network Manager, as Network Manager can monitor the tunnel … Continue reading Automate VPN failover via TGW attachment

Automate VPN connection and its TGW attachment


If you use the CloudFormation resource AWS::EC2::VPNConnection to create the VPN connection and attach it to the Transit Gateway (TGW), you may notice that it does not return the TGW attachment ID. So it is a bit annoying if you would like to tag the attachment and associate the attachment to a non-default TGW route table. … Continue reading Automate VPN connection and its TGW attachment