- What's New
- Function Overview
- Service Overview
- Getting Started
-
User Guide
-
VPC Endpoint Services
- VPC Endpoint Service Overview
- Creating a VPC Endpoint Service
- Viewing a VPC Endpoint Service
- Deleting a VPC Endpoint Service
- Managing Connections of a VPC Endpoint Service
- Managing Whitelist Records of a VPC Endpoint Service
- Viewing Port Mappings of a VPC Endpoint Service
- Managing Tags of a VPC Endpoint Service
- VPC Endpoints
- Permissions Management
- Quotas
-
VPC Endpoint Services
-
API Reference
- Before You Start
- API Overview
- Calling APIs
-
API
- Version Management
-
VPC Endpoint Services
- Creating a VPC Endpoint Service
- Querying VPC endpoint services
- Querying details of a VPC endpoint service
- Modifying a VPC endpoint service
- Deleting a VPC Endpoint Service
- Querying connections of a VPC endpoint service
- Accepting or Rejecting a VPC Endpoint
- Querying whitelist records of a VPC endpoint service
- Batch Adding or Deleting Whitelist Records of a VPC Endpoint Service
- Changing the Name of the VPC Endpoint Service
- This API is used to update the description of the VPC endpoint connection.
- Batch Adding or Deleting Whitelist Records of a VPC Endpoint Service
- Batch Adding or Deleting Whitelist Records of a VPC Endpoint Service
- Updating the Description of a Whitelist Record of a VPC Endpoint Service
-
VPC Endpoints
- Querying public VPC endpoint services
- Querying basic information of a VPC endpoint service
- Creating a VPC endpoint
- Querying VPC endpoints
- Querying details of a VPC endpoint
- Deleting Endpoint
- Updating the Whitelist of a VPC Endpoint
- Changing a route table of a VPC endpoint
- Modifying Route Tables Associated with a VPC Endpoint
- Modifying Route Tables Associated with a VPC Endpoint
- Resource Quotas
- Tags
- Application Examples
- Appendix
- Change History
- SDK Reference
- Best Practices
- FAQs
Configuring Access Control for an Interface VPC Endpoint
Scenarios
To control IP addresses and CIDR blocks that can access a VPC endpoint, configure a whitelist. You can add or delete a whitelist record, or disable access control if you no longer need it.
For details about how to configure access control and whitelist when you are buying a VPC endpoint, see Buying a VPC Endpoint.
This section describes how to enable and configure access control after a VPC endpoint is purchased.
Constraints
- Access Control is only available for VPC endpoints for connecting to interface VPC endpoint services.
- If Access Control is disabled, any IP address can access the VPC endpoint.
- A maximum of 20 whitelist records can be added.
Enable Access Control and Add a Whitelist Record
- Go to the VPC endpoint list page.
- In the VPC endpoint list, locate the VPC endpoint and click its ID.
- On the displayed page, click the Access Control tab.
- On the Access Control tab, click Add to Whitelist.
- Enter the authorized IP addresses or CIDR blocks.
NOTE:
A maximum of 20 whitelist records can be added for each VPC endpoint.
The asterisk (*) indicates all IP addresses or CIDR blocks can access the VPC endpoint. The current account is added to the whitelist by default.
- Click OK.
Delete a Whitelist Record
- Go to the VPC endpoint list page.
- In the VPC endpoint list, locate the VPC endpoint and click its ID.
- Select the Access Control tab.
- In the whitelist, locate the IP address or CIDR block and click Delete in the Operation column.
To delete whitelist records, select all the target IP addresses or CIDR blocks and click Delete in the upper left corner.
- In the displayed Delete from Whitelist dialog box, click OK.
Feedback
Was this page helpful?
Provide feedbackThank you very much for your feedback. We will continue working to improve the documentation.