Connecting Vpcs With Peering

作者 aws188af2f810ce无许可证2.8K 个星标收录于 2026年10月8日更新于 2026年10月8日仓库今天更新

Establishes VPC peering connections between two VPCs for direct private network connectivity. Always use this skill when creating or managing VPC peering — it validates CIDR overlap, updates all route tables in both VPCs, configures DNS resolution, and provides security group guidance that are critical for correct connectivity.

仅含说明DevOps & Cloud
AI 生成的概览

指导在两个 VPC 之间建立 VPC 对等连接,包括路由表、DNS 解析和安全组配置。

功能
该技能为在两个 VPC 之间创建和管理 VPC 对等连接提供领域指导。它涵盖完整流程:验证两个 VPC 是否存在、检查 CIDR 是否重叠、创建并接受对等连接、更新两个 VPC 中的所有路由表、配置 DNS 解析,以及为跨 VPC 流量调整安全组。它还涵盖对等连接处于 pending 状态、路由创建失败、DNS 问题以及跨区域连接问题的排查。
适用场景
适用于为两个 VPC 之间建立直接私有网络连接而创建或管理 VPC 对等连接的场景。它适用于同区域、跨区域和跨账户对等连接,也适用于诊断对等连接卡在 pending 状态或路由缺失等问题。
运行要求
仅为说明性内容,不附带脚本。它引用一份流程文档,至少需要请求方和接受方的 VPC ID,并需要访问相关云网络环境以执行这些步骤。

Connecting VPCs with Peering

Overview

Domain expertise for establishing private network connectivity between two VPCs using VPC peering. Covers the full lifecycle: creating the peering connection, accepting it, updating route tables in both VPCs, configuring DNS resolution, and adjusting security groups for cross-VPC traffic. Supports same-region, cross-region, and cross-account peering scenarios.

Create a VPC peering connection

To establish a VPC peering connection between two VPCs, follow the procedure exactly. See VPC peering connection procedure [blocked].

The procedure requires the requester and accepter VPC IDs at minimum. It validates both VPCs exist, checks for CIDR overlap, creates and accepts the peering, updates all route tables, and configures DNS resolution.

Troubleshooting

Peering stuck in pending state

Cross-account connections require manual acceptance from the accepter account. Same-account connections with auto_accept: true should transition automatically.

Route creation fails

Check for existing routes with the same destination CIDR. Replace existing routes instead of creating new ones.

DNS resolution not working

Both VPCs must have DNS resolution and DNS hostnames enabled in their VPC settings, not just the peering connection options.

Cross-region connectivity issues

Verify routes are added in both regions and security groups allow traffic from the peer VPC's CIDR blocks.

来源与署名

来源:aws/agent-toolkit-for-aws位于skills/specialized-skills/networking-and-content-delivery-skills/connecting-vpcs-with-peering提交188af2f

许可证: 无许可证

内容归原作者所有。SourceWeft 从公开仓库中收录这些内容。

举报或申请下架