Guidance for Integration with Futurex Payment Hardware Security Module on AWS
Overview
How it works
These technical details feature an architecture diagram to illustrate how to effectively use this solution. The architecture diagram shows the key components and their interactions, providing an overview of the architecture's structure and functionality step-by-step.
Well-Architected Pillars
The architecture diagram above is an example of a Solution created with Well-Architected best practices in mind. To be fully Well-Architected, you should follow as many Well-Architected best practices as possible.
Operational Excellence
AWS PrivateLink connects your on-premises networks to private subnets, making it easier to manage your global network through a simplified network architecture.
Security
Payment customers connect to the payment HSM from a private subnet and sends commands over private endpoints. Network traffic using PrivateLink doesn’t traverse the public internet, reducing exposure to threats such as brute force and distributed denial-of-service (DDoS) attacks.
Reliability
This architecture uses a modular approach so that different workloads can scale based on increased demand of transactions.
Performance Efficiency
PrivateLink connects AWS services across different accounts and VPCs without requiring an internet gateway, network address translation (NAT) device, or public IP address. By controlling access to your VPC, you can manage traffic and data access patterns.
Cost Optimization
PrivateLink optimizes the network path, helping you reduce costs associated with NAT gateways, NAT instances, and firewall maintenance.
Sustainability
This architecture uses services that can dynamically scale to meet demand. This reduces the amount of compute power required by backend services that would otherwise need to keep running, even when workloads decrease.
Disclaimer
Did you find what you were looking for today?
Let us know so we can improve the quality of the content on our pages