Roshan shows you
how to set up a
Direct Connect gateway

Roshan_BLR0718

I want to start using an AWS Direct Connect gateway. How can I confirm that a Direct Connect gateway is right for my use case and then set it up?

An AWS Direct Connect gateway is a grouping of virtual private gateways and private virtual interfaces that belong to the same AWS account.

To determine if a Direct Connect gateway is appropriate for your use case, review the following limitations and considerations:

  • You can't use private virtual interfaces, Direct Connect gateways, or virtual private gateways (associated with VPCs) with a Direct Connect Gateway unless they're in the same AWS account.
  • You can't use a Direct Connect gateway to connect to a VPC in another account. However, you can access multiple VPCs across Regions in the same account.
  • You can't associate a virtual private gateway with more than one Direct Connect gateway.
  • You can't use a Direct Connect gateway to connect to a VPC in the China Region.
  • You can't connect to VPCs with overlapping CIDRs. Attempting to do so results in the error VPC Cider Overlap Detected. For example, if you associated Virtual Private Gateway 1 (attached to VPC1 with CIDR 10.0.0.0/8) in Region us-east-1 with the Direct Connect gateway, you can't associate Virtual Private Gateway 2 (attached to VPC 2 with CIDR 10.0.0.0/8) in Region us-west-2, because the CIDRs overlap.
  • You can't create a public virtual interface to a Direct Connect gateway.
  • You can't associate a virtual private gateway with a Direct Connect gateway unless the Direct Connect gateway is attached to a VPC.
  • You can't tag a Direct Connect gateway (unlike how you can tag virtual private gateways).
  • You can't use a Direct Connect gateway with AWS VPN CloudHub.

Also note that certain traffic flows aren't supported for Direct Connect gateways:

  • Direct communication between VPCs that are associated with the Direct Connect gateway. For example, if you have Virtual Private Gateway 1 attached to VPC 1 and Virtual Private Gateway 2 attached to VPC 2 associated with a Direct Connect Gateway, you can't communicate between VPC 1 and VPC 2 through the Direct Connect gateway.
  • Direct communication between the private virtual interfaces that are attached to the Direct Connect gateway. For example, if you have Private Virtual Interface 1 and Private Virtual Interface 2 attached to a Direct Connect Gateway, you can't have communication between Private Virtual Interface 1 and Private Virtual Interface 2 through the Direct Connect gateway.
  • Direct communication between a private virtual interface attached to a Direct Connect gateway and a VPN connection on a virtual private gateway that's associated with the same Direct Connect gateway.

Create a Direct Connect gateway

You can create your Direct Connect gateway in any public Region, excluding the China Region. The Direct Connect limit of Direct Connect gateways per account is 200.

Follow the instructions in Creating a Direct Connect Gateway to create your gateway.

Associate a virtual private gateway

You can associate a Direct Connect gateway with multiple virtual private gateways to access multiple VPCs across Regions. The limit of virtual private gateways per Direct Connect gateway is 10.

Follow the instructions in Associating and Disassociating Virtual Private Gateways to associate your gateway.

Provision a private virtual interface to a Direct Connect gateway

You can attach multiple private virtual interfaces across Regions to a Direct Connect gateway to segregate traffic for your use case. The limit for virtual interfaces per Direct Connect gateway is 30.

Note: One private virtual interface is sufficient to access VPCs (attached to virtual private gateways) across Regions and reduce BGP sessions.

Follow the instructions in Creating a Private Virtual Interface to the Direct Connect gateway to provision your virtual interface.


Did this page help you? Yes | No

Back to the AWS Support Knowledge Center

Need help? Visit the AWS Support Center

Published: 2018-07-24