ReadonlynameName segment for this endpoint's construct id.
ReadonlypolicyEndpoint policy. Required, unlike on an interface endpoint: a gateway endpoint carries every subnet on its route tables and has no security group, and the AWS default policy grants those subnets full access to the service, so there is no safe implicit default to fall back on.
ReadonlyrouteRoute table IDs that receive the service's prefix-list route.
ReadonlyserviceThe endpoint service, as an aws-cdk-lib service object: AWS offers gateway endpoints for
GatewayVpcEndpointAwsService.S3, S3_EXPRESS and DYNAMODB only.
One gateway VPC endpoint to create.
A gateway endpoint installs prefix-list routes into route tables rather than placing ENIs in subnets, so it intercepts all traffic to its service from every subnet on those route tables. It has no security group, so its policy is the only control on it - hence the policy is required.
AWS: AWS::EC2::VPCEndpoint with VpcEndpointType Gateway