Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
RamGuy239
Advisor
Advisor

Amazon AWS "Auto Scale Group - Existing Centralized VPC for Transit Gateway" without NAT gateways

Greetings,

 

Im trying to deploy a Check Point Network Security (IaaS) Auto Scaling Group in Amazon AWS, its getting deployed within a inspection VPC, and its going to be east-west (within AWS) inspection only, and the customer already has a Transit Gateway and GWLB deployed.

Management has already been moved from on-premise VMWare ESXi to AWS, its currently running on a r6i.xlarge instance, same with the dedicated log server/smart event, has also been moved and is running on a r6i.xlarge instance.

 

Facing some issues when attempting to deploy this auto-scaling group, the "Auto Scale Group - Existing Centralized VPC for Transit Gateway", aka "tgw-gwlb.yaml" cloud formation template enforces the creation of new NAT Gateways and GWLB, and I cant seem to find any way aroud this?

 

Could anyone give me any pointers here? Cant seem to locate any cloud formation or any other AWS templates that would allow me to simply create a Auto-Scaling group and have it attached to existing Transit Gateway and GWLB?

Would the easiest way to just have let the template create a TGW and NAT GWs, and simply delete them afterwards? Why are NAT GWs a requirement? Why would those be needed unless you want the auto-scaling group to do north-south traffic?

Certifications: CCSA, CCSE, CCSM, CCSM ELITE, CCTA, CCTE, CCVS, CCME
0 Kudos
0 Replies

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.