- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
11-09-2021 10:23 AM
Hi All
Has anyone else had a play with the GWLB on AWS?
I've here a topology hub and spoke base on this link:
But, some lambdas in the spoke are with timeout to connect to Internet. The firewalls are available one each Availability Zone and are the same routes for the IGW. I've the follow scenario:
US Virginia:
Lambda Spoke - Availability Zone F - The default route table 0.0.0.0/ to TGW Attachment.
TGW Attachment via Spoke Route Table
Spoke Route Table has a default route 0.0.0.0 to VPC with the security appliances
TGW Attachment on the VPC Security available on the AZ1 e AZB has default route to VPC endpoint GWLB.
This endpoint GWLB was created on the same private subnet of Firewall.
Packets arrives to Firewall and we have a source nat to public interface and route to IGW.
It's work, but sometimes we've timeout on the sessions with the spokes to Internet.