VPCs should have interface endpoint for Amazon ECR API

Cette page n'est pas encore disponible en français, sa traduction est en cours.
Si vous avez des questions ou des retours sur notre projet de traduction actuel, n'hésitez pas à nous contacter.

Description

Virtual private clouds (VPCs) should have interface VPC endpoints configured for Amazon ECR API to enable private access to ECR services. AWS PrivateLink enables customers to access services hosted on AWS while keeping all network traffic within the AWS network, which prevents traffic from service users from traversing the internet.

Remediation

Configure a VPC endpoint for Amazon ECR API by creating an interface endpoint with the service name com.amazonaws..ecr.api. For guidance on configuring a VPC endpoint, refer to the Access an AWS service using an interface VPC endpoint section of the AWS PrivateLink Guide.