VpcConfigProps

class aws_cdk.aws_bedrockagentcore.VpcConfigProps(*, vpc, allow_all_outbound=None, security_groups=None, vpc_subnets=None)

Bases: object

VPC configuration properties.

Only used when network mode is VPC.

Parameters:
  • vpc (IVpc) – The VPC to deploy the resource to.

  • allow_all_outbound (Optional[bool]) – Whether to allow the resource to send all network traffic (except ipv6). If set to false, you must individually add traffic rules to allow the resource to connect to network targets. Do not specify this property if the securityGroups property is set. Instead, configure allowAllOutbound directly on the security group. Default: true

  • security_groups (Optional[Sequence[ISecurityGroup]]) – The list of security groups to associate with the resource’s network interfaces. Only used if ‘vpc’ is supplied. Default: - If the resource is placed within a VPC and a security group is not specified by this prop, a dedicated security group will be created for this resource.

  • vpc_subnets (Union[SubnetSelection, Dict[str, Any], None]) – Where to place the network interfaces within the VPC. This requires vpc to be specified in order for interfaces to actually be placed in the subnets. If vpc is not specify, this will raise an error. Default: - the Vpc default strategy if not specified

ExampleMetadata:

fixture=default infused

Example:

vpc = ec2.Vpc(self, "testVPC")

code_interpreter = agentcore.CodeInterpreterCustom(self, "MyCodeInterpreter",
    code_interpreter_custom_name="my_sandbox_interpreter",
    description="Code interpreter with isolated network access",
    network_configuration=agentcore.BrowserNetworkConfiguration.using_vpc(self,
        vpc=vpc
    )
)

code_interpreter.connections.add_security_group(ec2.SecurityGroup(self, "AdditionalGroup", vpc=vpc))

Attributes

allow_all_outbound

Whether to allow the resource to send all network traffic (except ipv6).

If set to false, you must individually add traffic rules to allow the resource to connect to network targets.

Do not specify this property if the securityGroups property is set. Instead, configure allowAllOutbound directly on the security group.

Default:

true

security_groups

The list of security groups to associate with the resource’s network interfaces.

Only used if ‘vpc’ is supplied.

Default:

  • If the resource is placed within a VPC and a security group is

not specified by this prop, a dedicated security group will be created for this resource.

vpc

The VPC to deploy the resource to.

vpc_subnets

Where to place the network interfaces within the VPC.

This requires vpc to be specified in order for interfaces to actually be placed in the subnets. If vpc is not specify, this will raise an error.

Default:
  • the Vpc default strategy if not specified