AWS Networking
Resource Access Manager (RAM)
Eliminate resource duplication by securely sharing Subnets, Transit Gateways, and more across your AWS accounts.
The Ingredients
Resource Owner
The account that creates the resource and initiates the share.
Shareable Resource
Subnets, Transit Gateways, Route 53 Resolver rules, or Licenses.
Principals
Individual accounts, OUs, or an entire AWS Organization.
Permissions
Managed permissions that define how consumers use the resource.
The Sharing Process
ACCOUNT A
(Owner)
VPC / Subnet
1. CREATE SHARE
AWS RAM
2. ACCEPT / ATTACH
ACCOUNT B
(Consumer)
EC2 Instance
“I own the Subnet and pay for the VPC.”
“I facilitate the handshake and trust.”
“I launch my instances into your Subnet.”