aws AWS What's New ·

AWS PrivateLink introduces tunnel endpoints for accessing network segments

networkingawsgaarchitect
feature

AWS PrivateLink now offers tunnel endpoints, a new VPC endpoint type, to enable private and secure access to network segments within other VPCs or accounts. This enhancement simplifies sharing resources, allowing customers to define a CIDR range and share it with vendors via AWS Resource Access Manager (RAM). Vendors can then use GENEVE encapsulation through a tunnel endpoint to access the specified network segment. The service incurs hourly and per-GB data processing charges, and it is broadly available across numerous AWS regions.

Features (1)
  • New PrivateLink tunnel endpoints for cross-account network access

    AWS PrivateLink customers can now use a new type of VPC endpoint, called a 'tunnel' endpoint, to privately and securely access specific network segments in another VPC or account. This feature allows sharing a CIDR range with external parties, such as vendors, via AWS Resource Access Manager (RAM), simplifying resource access management compared to individual resource configurations.

Read the original announcement →

https://aws.amazon.com/about-aws/whats-new/2026/9/privatelink-tunnel-endpoint/

Related releases