Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
EventBridge Connection
Search
Sponsored
·
Your Podcast. Everywhere. Effortlessly.
Share. Educate. Inspire. Entertain. You do you. We'll handle the rest.
→
kensh
June 13, 2026
Technology
820
5
Share
Embed
Copy iframe code
Copy JS code
Copy link
Start on current slide
EventBridge Connection
kensh
June 13, 2026
More Decks by kensh
See All by kensh
serverless team topology
_kensh
3
450
Codeful Serverless / 一人運用でもやり抜く力
_kensh
8
930
Webアプリを Lambdaで動かすまでに考えること / How to implement monolithic Lambda Web Application
_kensh
9
2.4k
サーバーレスアーキテクチャと生成AIの融合 / Serverless Meets Generative AI
_kensh
12
4.7k
サーバーレスで楽しよう!お気軽に始められる3つのポイント / Have fun with Serverless!
_kensh
4
1.1k
Serverless Data Processing with AWS Lambda and Apache Kafka
_kensh
0
360
Technology that powers Lambda / AWS Lambda を支える技術
_kensh
27
8.9k
Platform Engineering with CodeCatalyst
_kensh
3
570
Innovation for Everyone
_kensh
0
330
Other Decks in Technology
See All in Technology
みてねにおけるAI-DLC導入活動とAIドリブン開発の現在地/JAWS-UG AI-DLC #2
isaoshimizu
2
300
Oracle AI Databaseデータベース・サービス: BaseDB/ExaDB-Dの可用性
oracle4engineer
PRO
1
990
承認ゲートは何を守っているのか? AIエージェントの自律購入を実測した結果
yama3133
1
100
[ホンマでっか SRE] あなたはなぜ SRE に?
_awache
0
550
ClaudeCodeでセキュリティ監視業務を半自動化_1年の運用でわかったAIに任せる設計の5つのポイント
kintotechdev
4
990
「面白い!」を信じ抜け。激動の時代を貫く、オンリーワン・エンジニアの条件
kizawa2020
2
510
AI時代のデータ基盤を考える問い
pacocat
0
780
本番に近いテストをもっと手軽に - Postmanで広がるAPIテストの世界 / Expanding the World of API Testing with Postman
yokawasa
1
180
あなたの知らないバージョン命名規則
sat
PRO
3
870
Guerilla InnerSource in enterprises, during the AI hype
onenashev
PRO
0
130
どんな手を使っても絶対間に合わせるスケジューラ
asari194617
0
1.5k
Hub & Spoke 環境のネットワークルーティングを分解してみる
tsuyataku
1
460
Featured
See All Featured
Unsuck your backbone
ammeep
672
58k
Bash Introduction
62gerente
615
220k
Mozcon NYC 2025: Stop Losing SEO Traffic
samtorres
1
510
Marketing Yourself as an Engineer | Alaka | Gurzu
gurzu
0
280
Sam Torres - BigQuery for SEOs
techseoconnect
PRO
0
510
SEO for Brand Visibility & Recognition
aleyda
0
4.7k
Collaborative Software Design: How to facilitate domain modelling decisions
baasie
1
300
Fireside Chat
paigeccino
42
4k
A brief & incomplete history of UX Design for the World Wide Web: 1989–2019
jct
2
490
Six Lessons from altMBA
skipperchong
29
4.5k
[SF Ruby Conf 2025] Rails X
palkan
2
1.3k
AI: The stuff that nobody shows you
jnunemaker
PRO
9
950
Transcript
© 2026, Amazon Web Services, Inc. or its affiliates. All
rights reserved. Amazon Confidential and Trademark. © 2026, Amazon Web Services, Inc. or its affiliates. All rights reserved. Amazon Confidential and Trademark. Kensuke Shimokawa 2 0 2 6 0 6 1 3 _ J A W S - I B A R A K I - D X - H A N D S O N Snr. Serverless Specialist Amazon Web Services Japan VPCの中、 EventBridge Connectionで入れますよ? https://speakerdeck.com/_kensh https://qiita.com/_kensh _kensh
© 2026, Amazon Web Services, Inc. or its affiliates. All
rights reserved. Amazon Confidential and Trademark. © 2026, Amazon Web Services, Inc. or its affiliates. All rights reserved. Amazon Confidential and Trademark. 自己紹介 2 https://speakerdeck.com/_kensh https://qiita.com/_kensh _kensh / 下川 賢介
© 2026, Amazon Web Services, Inc. or its affiliates. All
rights reserved. Amazon Confidential and Trademark. 今日のゴール • サーバーレスサービスから VPC内の Private API を直接呼ぶとい う新しい選択肢があることを持ち帰っていただく 3
© 2026, Amazon Web Services, Inc. or its affiliates. All
rights reserved. Amazon Confidential and Trademark. Before: VPC内エンドポイントを呼ぶのは面倒だった • Lambda を VPC に配置 → コールドスタート • Lambda のコードはシンプル → 中身は HTTP GET するだけ • ENI 作成 → デプロイ時間増 • 同時実行数 → スロットリング やりたいのは「HTTP リクエストを1本投げる」だけなのに。 4
© 2026, Amazon Web Services, Inc. or its affiliates. All
rights reserved. Amazon Confidential and Trademark. After: Connection 1つで VPC 内に到達 • Lambda 不要 • コード管理不要 • フルマネージド • 2024年12月 GA 5
© 2026, Amazon Web Services, Inc. or its affiliates. All
rights reserved. Amazon Confidential and Trademark. VPC Lattice の2つのモデル 6
© 2026, Amazon Web Services, Inc. or its affiliates. All
rights reserved. Amazon Confidential and Trademark. VPC Lattice の2つのモデル 7 ※ Resourceモデルを利用いただく場合も、サービスネットワークを自分で管理して VPC間のサービス同士の接続をさせることはできる https://pages.awscloud.com/rs/112-TZM-766/images/AWS-Black- Belt_2025_AmazonVPCLattice_0122_v1.pdf#page=18
© 2026, Amazon Web Services, Inc. or its affiliates. All
rights reserved. Amazon Confidential and Trademark. どんな仕組み? 8
© 2026, Amazon Web Services, Inc. or its affiliates. All
rights reserved. Amazon Confidential and Trademark. 自分で作るもの vs AWSが自動で作るもの 9 Customer が作るのは3つだけ。裏側はAWSが勝手にやってくれる。 ※ クロスアカウントの場合はResource Configurationをアクセス元にAWS RAMで共有することで疎通 https://docs.aws.amazon.com/ja_jp/eventbridge/latest/userguide/connection-private-rc-provider.html
© 2026, Amazon Web Services, Inc. or its affiliates. All
rights reserved. Amazon Confidential and Trademark. 実際にやってみた 10 ※ ALB は Fixed Response だけ。バックエンドなし。最小構成での疎通確認。
© 2026, Amazon Web Services, Inc. or its affiliates. All
rights reserved. Amazon Confidential and Trademark. DEMO
© 2026, Amazon Web Services, Inc. or its affiliates. All
rights reserved. Amazon Confidential and Trademark. 結果 12 { "StatusCode": 200, "ResponseBody": { "status": "ok", "source": "internal-alb" } } Step Functions から VPC 内の Internal ALB に到達。 Lambda なし。
© 2026, Amazon Web Services, Inc. or its affiliates. All
rights reserved. Amazon Confidential and Trademark. 制約(知っておくべきこと) 13 「Internal ALB でもパブリック証明書が必要」が一番引っかかるポイント。 ※ Resource Configurationにはいろんなタイプがあるが 現状「単一リソースタイプ」しか対応していない
© 2026, Amazon Web Services, Inc. or its affiliates. All
rights reserved. Amazon Confidential and Trademark. なぜ Internal なのにパブリック証明書? 14 • 通信経路: AWS バックボーン内(インターネットに出ない) • 証明書検証: HTTP Task のクライアント実装がパブリック CA のトラストストアで検証 → 経路はプライベート、信頼チェーンはパブリック。
© 2026, Amazon Web Services, Inc. or its affiliates. All
rights reserved. Amazon Confidential and Trademark. EventBridge Connection は、固定費ゼロで使える 15 ※ Service NetworkはAWSサービス所有のため課金されない、VPC リソースの数に応じて固定費に見えていた https://aws.amazon.com/jp/vpc/lattice/pricing VPC Lattice データ処理課金は Resource Gateway 通過分だけ
© 2026, Amazon Web Services, Inc. or its affiliates. All
rights reserved. Amazon Confidential and Trademark. まとめ • EventBridge Connection (Private) で Step Functions から VPC 内 API を直接呼べる • Lambda 中継もNAT Gatewayも不要 • 作るのは Resource Gateway + Resource Configuration + Connection の3つだけ • パブリック証明書(ACM)が必須 — Internal でも例外なし • 2024年12月 GA。今すぐ使える。 16
© 2026, Amazon Web Services, Inc. or its affiliates. All
rights reserved. Amazon Confidential and Trademark. 参考リンク • Simplifying private API integrations with Amazon EventBridge and AWS Step Functions • Connecting to private APIs in EventBridge • Call HTTPS APIs in Step Functions workflows 17
© 2026, Amazon Web Services, Inc. or its affiliates. All
rights reserved. Amazon Confidential and Trademark. © 2026, Amazon Web Services, Inc. or its affiliates. All rights reserved. Amazon Confidential and Trademark. Latticeのお得な情報 Mirai Takematsu What’s new, Lattice!
© 2026, Amazon Web Services, Inc. or its affiliates. All
rights reserved. Amazon Confidential and Trademark. 改めて…2025年1月末にGAしたVPC リソースへの接続 PrivateLink/VPC Lattice により、別 VPC 内の VPC リソースにプライベートにアクセス →このときロードバランサーは必須ではなく、VPC リソースへ直接アクセス可能 プロバイダー VPC カスタマー VPC リソースゲートウェイ VPC リソース (Amazon RDS) リソース設定 カスタマーアカウント プロバイダーアカウント AWS RAM による共有 Resource エンドポイント AWS PrivateLink カスタマー VPC Service Network エンドポイント カスタマー VPC Service Network VPC 関連付け VPC Lattice Service Network
© 2026, Amazon Web Services, Inc. or its affiliates. All
rights reserved. Amazon Confidential and Trademark. VPC Lattice/PrivateLink Black Belt のご案内 • VPC Lattice • VPC Lattice の概要や詳細な設定のご紹介 • PrivateLink • PrivateLink の概要や詳細な設定のご紹介 • リソース設定(Resorurce Configuration)やリ ソースゲートウェイ(Resuroce Gateway)な ど、VPC リソースへの接続に関する情報も 記載
© 2026, Amazon Web Services, Inc. or its affiliates. All
rights reserved. Amazon Confidential and Trademark. Thank you! © 2026, Amazon Web Services, Inc. or its affiliates. All rights reserved. Amazon Confidential and Trademark.