Open morsapaes opened 7 months ago
The docs indicate support for privatelink is not yet added for mysql.
{{< note >}}
Support for AWS PrivateLink connections is planned for a future release.
{{< /note >}}
I am currently working on a cloud test for mysql via privatelink though.
The good news for @bobbyiliev is that it looks like the existing lambda's we have in the postgres terraform module seems to work fine here. The setup is going to be almost exactly the same.
There are some gotchas on the RDS setup.
An easy(ish) gotcha on the RDS MYSQL config side is that, at least with v8.0 parameter groups, replica_preserve_commit_order
is not available to be set; however, on 8.0.27
and above this will default to the correct value for us, so we may need 8.0 users to be on at least 8.0.27
.
A much bigger foot gun is configuration around max_connect_errors
. It appears that health checks coming from the AWS target group will count towards SUM_CONNECT_ERRORS
, and will, by default, block the NLB after 100 health checks. We'll need to recommend users set this value to it's max value 9223372036854775807
in the parameter group in order to prevent this.
Alternatively, we could suggest users set skip_name_resolve
to "1"
. This appears disable all data in the hosts and host_cache tables. This data could be useful for auditing or debugging, so I wouldn't recommend this approach.
cc @rjobanp
@jubrad we can mark this closed now, right?
Feature request
Follow-up to #25047, #25027.
Add tests for validating connections over PrivateLink. We've made the decision to skip validation for this connection type for Private Preview, but marked it as a requirement for Public Preview.