Does AWS Control Tower have integrations with the AWS VPC IPAM service?

0

If I start using IPAM and later on use Control Tower, will Control Tower use my IPAM integration? Or would i have to make a significant changes to for Control Tower to deploy VPCs using the AWS Pool CIDR that I provide?

2 Answers
4

Currently, as of Control Tower the 2.7 version of the Landing Zone does not use IPAM, but with all things AWS that could change down the road. While Control Tower does not directly use IPAM it doesn't mean it can't be incorporated as the Account Factory and Account Factory for Terraform (AFT) provide both Cloudformation and Terraform methods to customize your Control Tower controlled organization. You could disable the default Control Tower Network Configuration and instead implement your own customized version.

Jeremy
answered 2 years ago
0

In addition to the answer above, this blog describes a solution that uses Control Tower's account factory to automate the process of sharing a VPC IPAM pool with newly created managed accounts: https://aws.amazon.com/blogs/mt/using-amazon-ipam-to-enhance-aws-control-tower-governance-for-networking-resources/

As of today, VPC IPAM does not automate creating VPCs, but you could extend the solution above to automatically create VPCs that are compliant with IPAM pools.

AWS
Temi_O
answered a year ago

You are not logged in. Log in to post an answer.

A good answer clearly answers the question and provides constructive feedback and encourages professional growth in the question asker.

Guidelines for Answering Questions