Last Updated: 2024-02-22

Background

AWS PrivateLink allows private connectivity between virtual private clouds (VPC), supported AWS services, and on-premises networks. This connection does not expose traffic to the public internet, making it a great choice for data federation across cloud and on-prem networks and other use cases.

Starburst Galaxy extends support for AWS PrivateLink across certain catalogs. This tutorial will guide you through the process needed to configure PrivateLink for MongoDB Atlas.

Scope of tutorial

In this tutorial, you will learn how to configure AWS PrivateLink for MongoDB Atlas.

Learning objectives

Once you've completed this tutorial, you will be able to:

Prerequisites

About Starburst tutorials

Starburst tutorials are designed to get you up and running quickly by providing bite-sized, hands-on educational resources. Each tutorial explores a single feature or topic through a series of guided, step-by-step instructions.

As you navigate through the tutorial you should follow along using your own Starburst Galaxy account. This will help consolidate the learning process by mixing theory and practice.

Background

If you are configuring PrivateLink for the first time you are encouraged to work with a Starburst technical resource. This individual will work with you to set up the environment needed to complete the tutorial.

Contacting your technical resource

To be assigned this resource, you should reach out to your regular Starburst account team for assistance.

Working together

Once assigned, your Starburst technical resource will work with you to set up an environment where you can complete the tutorial.

Please review the following overview of this process before beginning the tutorial.

Your responsibilities:

Background

Understanding the MongoDB PrivateLink architecture is important when completing the steps in this tutorial. In this section you will learn about this architecture and the way that Starburst Galaxy uses it to securely connect private clouds.

This tutorial also follows MongoDB documentation on the topic. It is recommended that you consult this documentation before beginning.

Reference architecture

The following diagram illustrates a PrivateLink connection between the Starburst Galaxy VPC and the MongoDB Atlas VPC.

Review the diagram and corresponding notes below for more information.

  1. Once the PrivateLink configuration is complete, an endpoint is created in the Starburst Galaxy VPC (VPC A).

    This endpoint connects to a Network Load Balancer located inside an endpoint service situated in the MongoDB Atlas VPC (VPC B).

    This establishes a private connection between Starburst Galaxy and MongoDB Atlas, enabling PrivateLink functionality.
  2. In this reference architecture, the Starburst Galaxy VPC is VPC A.
  3. In this reference architecture, the MongoDB Atlas VPC is VPC B.

Background

MongoDB Atlas only supports PrivateLink for Dedicated, Serverless, or Federated clusters. You must have access to either the Organization Owner or Project Owner role to be able to configure PrivateLink.

This section will walk you through the process of confirming that you meet all the requirements.

Step 1: Check your cluster type

Let's begin by ensuring that you have the appropriate cluster type needed to complete this tutorial.

You can find this information in the Database Deployments section of the MongoDB Atlas UI.

Step 2: Confirm your role

Next, it's time to confirm your role. Not all roles have the permissions needed to complete this tutorial.

To continue, you will need to check that you have access to either the Organization Owner or Project Owner role.

Option 1: Organization Access

Option 2: Project Access

Background

Now it's time to begin configuring PrivateLink in your MongoDB Atlas account. You'll be working closely with Starburst technical support to complete the remainder of this tutorial.

Step 1: Return to your project

In the last section of this tutorial, you accessed your project using the MongoDB UI.

To complete this tutorial, you're going to return to this project and continue where you left off.

Step 2: Launch the Private Endpoint wizard

MongoDB provides a Private Endpoint wizard that simplifies the process of configuring PrivateLink for your cluster.

Step 3: Create private endpoint

Now you're ready to create a private endpoint and select the cloud provider and region.

Step 4: Confirm creation of endpoint

Your MongoDB Atlas endpoint service is now being created.

Wait for the process to finish before moving to the next step.

Step 5: Record the endpoint service ID

Now it's time to record the endpoint service ID. You will need to send this to Starburst technical support via support ticket. To record the endpoint service ID, you will need to enter several values then record the endpoint service ID when it is generated.

Step 6: Open support ticket

You are going to use the automated assistant in Starburst Galaxy to open a support ticket and provide support with the Endpoint Service ID that you just copied.

Step 7: Finalize endpoint connection

Once you receive the VPC Endpoint ID, you are ready to finalize your endpoint connection.

You will then record the endpoint for use in the following step.

Step 8: Prepare to copy the connection string

You've finished most of the steps necessary to configure PrivateLink.

Next, you need a few more pieces of information for Starburst support. This will enable them to finish establishing the connection on their side.

Starburst support will notify you when they have completed configuration of PrivateLink in Galaxy. After this, you will be ready to use PrivateLink to securely configure your MongoDB Atlas catalog.

Step 9: Copy the connection string

You're almost done! For the final step, you need to locate the connection string and copy it.

Tutorial complete

Congratulations! You have reached the end of this tutorial, and the end of this stage of your journey.

You're all set! Now you can use PrivateLink to configure access to data in MongoDB Atlas.

Continuous learning

At Starburst, we believe in continuous learning. This tutorial provides the foundation for further training available on this platform, and you can return to it as many times as you like. Future tutorials will make use of the concepts used here.

Next steps

Starburst has lots of other tutorials to help you get up and running quickly. Each one breaks down an individual problem and guides you to a solution using a step-by-step approach to learning.

Tutorials available

Visit the Tutorials section to view the full list of tutorials and keep moving forward on your journey!

Start Free with
Starburst Galaxy

Up to $500 in usage credits included

  • Query your data lake fast with Starburst's best-in-class MPP SQL query engine
  • Get up and running in less than 5 minutes
  • Easily deploy clusters in AWS, Azure and Google Cloud
For more deployment options:
Download Starburst Enterprise

Please fill in all required fields and ensure you are using a valid email address.