Protected ReadonlybasepropsReadonlyinterfaceSecurity group id of each interface endpoint created, keyed by its name. The contract the orchestrating module wires its workloads against: a consumer adds an ingress rule for
its own client security group to the groups of the services it uses. Gateway endpoints have no
security group and so contribute no entry.
ReadonlynodeThe tree node.
Protected ReadonlypropsProtected ReadonlyscopeProtectedaccountProtectedpartitionProtectedregionCreates or returns a child stack that inherits the parent stack's env (account and region). Subsequent calls with the same id return the previously created stack.
Construct id for the child stack (must be unique within this construct's scope)
CloudFormation stack name
Optionalaccount: stringOptionalregion: stringProtectedgetReturns a string representation of this construct.
Applies one or more mixins to this construct.
Mixins are applied in order. The list of constructs is captured at the
start of the call, so constructs added by a mixin will not be visited.
Use multiple with() calls if subsequent mixins should apply to added
constructs.
The mixins to apply
This construct for chaining
StaticisChecks if x is a construct.
Use this method instead of instanceof to properly detect Construct
instances, even when the construct library is symlinked.
Explanation: in JavaScript, multiple copies of the constructs library on
disk are seen as independent, completely different libraries. As a
consequence, the class Construct in each copy of the constructs library
is seen as a different class, and an instance of one class will not test as
instanceof the other class. npm install will not create installations
like this, but users may manually symlink construct libraries together or
use a monorepo tool: in those cases, multiple copies of the constructs
library can be accidentally installed, and instanceof will behave
unpredictably. It is safest to avoid using instanceof, and using
this type-testing method instead.
Any object
true if x is an object created from a class which extends Construct.
Creates the AWS service endpoints of one VPC and exposes each interface endpoint's security group to the orchestrating module, which wires its own workloads to them.
A nested primitive rather than a module of its own: it takes
aws-cdk-libservice objects and pre-built policies, so it holds no service catalogue, no per-service knowledge, and no configuration vocabulary - the orchestrating module owns all three and decides which endpoints exist.Interface endpoint security groups intentionally start with no ingress. Each consumer creates a unique client security group and is granted access to only the endpoints it uses, so workloads sharing a VPC can share endpoints without a shared workload security group.