Binding an EIP to or Unbinding an EIP from a GeminiDB DynamoDB-Compatible Instance Node
Scenarios
By default, GeminiDB DynamoDB-Compatible instances are accessible only over a private network to help ensure data security and access efficiency. To access an instance from outside the private network, you can bind an EIP to a node in the instance so it can be reached over a public network.
Binding an EIP directly to an instance node increases security risks. If security rules are misconfigured or a vulnerability is exploited, an attacker may obtain your access credentials and perform malicious operations on database resources. You are advised to obtain an EIP by binding a public gateway address instead.
This section describes how to bind an EIP to or unbind an EIP from a GeminiDB DynamoDB-Compatible instance node.
Usage Notes
- Your instance must have a load balancer address. If no load balancer address is available, you can submit a service ticket on the console to contact the customer service.
- If an instance node already has an EIP bound to it, you must unbind the EIP before binding a new one.
- You need to set security groups and enable IP addresses and ports to access the instance. Before accessing a DB instance, request an EIP on the VPC console and add individual IP addresses or an IP address range that will access the DB instance to the security group's inbound rules. For details, see Setting a Security Group Rule.
- You need to estimate required bandwidth and buy an EIP with sufficient bandwidth resources. Client access exceptions caused by poor public network performance will not be included in the SLA.
- Public access reduces instance security. To achieve a higher transmission rate and security level, you are advised to migrate your applications to the ECS that is in the same region as your GeminiDB DynamoDB-Compatible instance.
- After the GeminiDB DynamoDB-Compatible instance is unbound from the public gateway, the pay-per-use EIP will be retained. To avoid extra fees, you can release the EIP.
Billing
For details about EIP pricing, see EIP Pricing Details.
Procedure
- Log in to the Huawei Cloud console.
- On the Instances page, click the target GeminiDB DynamoDB-Compatible instance name.
- In the Node Information area of the displayed Basic Information page, locate the target node and click Bind EIP in the Operation column. Figure 1 Binding an EIP
- In the displayed dialog box, select an EIP and click OK. If no available EIPs are displayed, click View EIP and create an EIP on the VPC console. Figure 2 Selecting an EIP
- In the EIP column of the node, check that the EIP is successfully bound.
To unbind the EIP, see Unbinding an EIP.
- Log in to the Huawei Cloud console.
- On the Instances page, click the name of the instance whose node has an EIP bound to it to go to the Basic Information page.
- In the Node Information area of the displayed Basic Information page, locate the target node and click Unbind EIP in the Operation column. Figure 3 Unbinding an EIP
- In the displayed dialog box, click Yes.
Feedback
Was this page helpful?
Provide feedbackThank you very much for your feedback. We will continue working to improve the documentation.See the reply and handling status in My Cloud VOC.
For any further questions, feel free to contact us through the chatbot.
Chatbot