ScyllaDB University Live | Free Virtual Training Event
Learn more
ScyllaDB Documentation Logo Documentation
  • Deployments
    • Cloud
    • Server
  • Tools
    • ScyllaDB Manager
    • ScyllaDB Monitoring Stack
    • ScyllaDB Operator
  • Drivers
    • CQL Drivers
    • DynamoDB Drivers
    • Supported Driver Versions
  • Resources
    • ScyllaDB University
    • Community Forum
    • Tutorials
Install
Search Ask AI
ScyllaDB Docs ScyllaDB Cloud Configure Network Access Configure Private Connectivity Private Connectivity with AWS Connect Your AWS VPC to ScyllaDB Cloud
For AI agents: a documentation index is available at https://cloud.docs.scylladb.com/master/llms.txt. A Markdown version of this page is at https://cloud.docs.scylladb.com/master/cluster-connections/private-connectivity/private-connectivity-aws/create-aws-vpc-endpoint.md.

Connect Your AWS VPC to ScyllaDB Cloud¶

This guide explains how to create an Interface VPC Endpoint in your AWS account to connect your application to a ScyllaDB Cloud cluster over AWS PrivateLink.

Before you begin: Complete Configure AWS PrivateLink in ScyllaDB Cloud and have the Service Name ready.

Prerequisites¶

  • The Service Name from the ScyllaDB Cloud PrivateLink configuration. See Retrieve the Service Name for details.

  • A ScyllaDB driver that supports Private Connectivity. See below for details.

Driver Requirement

Private Connectivity is a ScyllaDB Cloud capability that maintains token and shard awareness over PrivateLink and Private Service Connect. To use the feature, a native ScyllaDB Cloud driver that supports Private Connectivity is required. Other drivers, including Cassandra and DataStax drivers, are incompatible with the ScyllaDB Cloud Private Connectivity feature.

The following ScyllaDB drivers currently support Private Connectivity:

Driver

Since Version

Documentation

Python Driver

3.29.9

Documentation coming soon

Java Driver 4.x

4.19.0.7

Documentation coming soon

Go Driver

1.17.1 (recommended 1.18.1 or later)

Client Routes (PrivateLink / Private Service Connect)

Rust Driver

1.6.0 with the unstable-client-routes Cargo feature enabled

Client Routes (Private Networking)

Support for additional drivers will be added in future releases.

Step 1: Create the Interface VPC Endpoint¶

  1. Open the Amazon VPC console at https://console.aws.amazon.com/vpc/.

  2. In the navigation pane, choose Endpoints.

  3. Click Create endpoint.

  4. Configure the settings:

    • Name — A tag to identify the endpoint.

    • Type — Choose PrivateLink Ready partner services.

    • Service name — Enter the Service Name you obtained in the previous guide and click Verify service.

      Add Private Link dialog
    • VPC — Select the VPC from which you’ll access the endpoint service.

    • Enable private DNS — Enable this option. It allows your application to use the standard endpoint DNS name without requiring any driver configuration overrides, simplifying driver connection configuration.

      Enable private DNS option
    • Subnets — Select subnets in the Availability Zones where your application runs.

      Match Availability Zones using AZ IDs (for example, use1-az1), not AZ names (for example, us-east-1a). AZ names can map to different physical zones across AWS accounts, while AZ IDs are consistent. See Configure Availability Zones for details.

      Select subnets in Availability Zones
  5. Click Create endpoint.

See also Connect to an endpoint service as the service consumer in the Amazon AWS documentation.

Step 2: Connect Using a Compatible Driver¶

Use one of the ScyllaDB drivers that support Private Connectivity. See Driver requirement.

Follow the instructions provided in the Connect tab in your cluster’s UI. See Connect to Your Cluster for details.

The required configuration depends on whether you enabled private DNS when creating the endpoint.

With AWS Private DNS Enabled (Recommended)¶

If you enabled private DNS in the previous step, DNS resolution is handled automatically. No additional driver configuration is needed.

Without DNS¶

If you prefer not to use private DNS, provide the endpoint IP address directly in the driver connection. See the illustrative examples below.

Example for Python:

from cassandra.cluster import Cluster
from scylladb.cloud import ClientRoutesOptions, ClientRoutesEndpoint

options = ClientRoutesOptions(
    endpoints=[
        ClientRoutesEndpoint(
            connection_id="<connection-uuid>",
            connection_addr="<endpoint-ip>",
        )
    ]
)
cluster = Cluster(client_routes_options=options)

Example for Go:

cluster := gocql.NewCluster()
cluster.WithOptions(gocql.WithClientRoutes(
    gocql.WithEndpoints(gocql.ClientRoutesEndpoint{
        ConnectionID:   "<connection-uuid>",
        ConnectionAddr: "<endpoint-ip-or-dns>",
    }),
))

Refer to your driver documentation for details:

  • ScyllaDB Drivers

  • Connect an Application

Deleting a Cluster with a PrivateLink Connection¶

Connections are not automatically deleted when you delete a cluster, as they may be used by other clusters.

Remove any connections you no longer need from Connections to avoid unnecessary AWS charges.

Was this page helpful?

PREVIOUS
Configure AWS PrivateLink in ScyllaDB Cloud
NEXT
Private Connectivity with GCP
  • Create an issue

On this page

  • Connect Your AWS VPC to ScyllaDB Cloud
    • Prerequisites
    • Step 1: Create the Interface VPC Endpoint
    • Step 2: Connect Using a Compatible Driver
      • With AWS Private DNS Enabled (Recommended)
      • Without DNS
    • Deleting a Cluster with a PrivateLink Connection
ScyllaDB Cloud
Search Ask AI
  • Get Started
    • What Is ScyllaDB Cloud?
    • Free Trial
    • Quick Start Guide
    • Billing and Pricing
  • Create & Connect to Your Cluster
    • Deployment Overview
    • Configure and Launch a Cluster
    • Connect to Your Cluster
    • X Cloud Autoscaling Behavior and Best Practices
    • Deploy to Your Own AWS Account (BYOA)
    • Deploy to Your Own GCP Account (BYOA)
    • Configure Availability Zones
    • Cluster Setup Best Practices
    • Standard Clusters
  • Configure Network Access
    • Network Access Options
    • Configure AWS Transit Gateway (TGW) VPC Attachment Connection
    • Configure VPC Peering
      • VPC Peering with AWS
      • VPC Peering with GCP
    • Configure Private Connectivity
      • Private Connectivity with AWS
        • Configure AWS PrivateLink in ScyllaDB Cloud
        • Connect Your AWS VPC to ScyllaDB Cloud
      • Private Connectivity with GCP
        • Configure GCP Private Service Connect in ScyllaDB Cloud
        • Connect Your GCP VPC to ScyllaDB Cloud
    • Migrate a Cluster Connection
    • Check Cluster Availability
    • Glossary for Cluster Connections
  • Operate and Manage Clusters
    • Resize a Cluster
    • Add a Datacenter
    • Delete a Cluster
    • Configure Maintenance Windows
    • Configure Notifications
    • Track Resource Usage
    • Monitor Clusters
    • Monitor with Prometheus
    • Backups
  • Use ScyllaDB
    • Application Best Practices
    • Apache Cassandra Query Language (CQL)
    • ScyllaDB Drivers
    • Data Modeling
    • Tracing
    • Change Data Capture (CDC)
    • Role Based Access Control (RBAC)
    • ScyllaDB Alternator (DynamoDB-compatible API)
    • Lightweight Transactions (LWT)
    • ScyllaDB Integrations
  • Security
    • Security Best Practices
    • Security Concepts
    • Database-level Encryption
    • Storage-level Encryption
    • Client-to-node Encryption
    • Service Users
    • User Management
    • SAML Single Sign-On (SSO)
    • Immutable (WORM) Backups
    • Data Privacy and Compliance
  • Vector and Text Search
    • Quick Start Guide
    • Vector and Text Search Concepts
    • Vector and Text Search Deployments
    • Sizing and Capacity Planning
    • Working with Vector and Text Search
    • Working with Full Text Search
    • Vector Search with Alternator
    • Filtering
    • Quantization and Rescoring
    • LangChain and CassIO Compatibility
    • Security
    • Troubleshooting
    • FAQ
    • Glossary
    • Reference
    • Example Project
  • Cost Optimization
    • Cost Optimization Overview
    • Advanced Internode (RPC) Compression
    • Datacenter Placement and Data Transfer Costs
  • Automate with the ScyllaDB Cloud API
    • Programmatic Access Overview
    • Create a Personal Token for Authentication
    • API Reference
    • API Error Codes
    • Terraform Provider for ScyllaDB Cloud
    • ScyllaDB Cloud MCP Server
  • Get Help
    • FAQ
    • Tutorials
    • Getting Help
Docs Tutorials University Contact Us About Us
© 2026, ScyllaDB. All rights reserved. | Terms of Service | Privacy Policy | ScyllaDB, and ScyllaDB Cloud, are registered trademarks of ScyllaDB, Inc.
Last updated on 02 Oct 2026.
Powered by Sphinx 9.1.0 & ScyllaDB Theme 1.9.3