Skip to main content

AWS private networking options

Imply Polaris ingests data from publicly available sources by default. For cases where network traffic cannot traverse over the public internet, either due to configuration or security requirements, Polaris offers several private connectivity options. This topic covers private networking between AWS and Polaris. For information about Azure, see Azure private networking options.

Publish data from an event stream

For querying and publishing data from an event stream, you can use AWS PrivateLink to establish a secure connection from your AWS virtual private cloud (VPC) to Polaris. The resulting PrivateLink connection is unidirectional with Polaris acting as the service provider and your VPC endpoint acting as the service consumer. For more information, see AWS PrivateLink for querying and publishing data.

Consume data from an event stream

For consuming data from an event stream in a Kafka cluster hosted on AWS, Polaris supports the following options:

  • Multi-VPC private connectivity for Amazon MSK: This AWS managed solution enables you to connect the Polaris VPC to your Amazon MSK cluster over AWS PrivateLink while keeping all traffic within the AWS network. For more information, see Amazon multi-VPC private connectivity.
  • Single AWS PrivateLink endpoint service: This solution allows you to establish a secure connection through a single AWS PrivateLink endpoint service and a Network Load Balancer (NLB). It requires additional infrastructure in your AWS account and modifications to the Kafka broker configurations. For more information, see AWS PrivateLink for consuming data.
  • Multi AWS PrivateLink endpoint service: This solution allows you to establish a secure connection using multiple AWS PrivateLink endpoint services and NLBs. It requires additional infrastructure in your AWS account. For more information, see AWS PrivateLink for consuming data.

Determine which private connectivity to use

To determine which option is better suited for your use case, refer to the following diagram:

Learn more

See the following topics for more information: