Datalake PRD to LAIVE SQL Server Connectivity

AWSNetworkadvanced
Datalake PRD to LAIVE SQL Server Connectivity — AWS network diagram

About This Architecture

Cross-account data lake architecture connecting AWS Glue ETL jobs in Datalake PRD account to legacy SQL Server databases in LAIVE account via AWS Transit Gateway. Data engineers and analytics users trigger Glue jobs that read from S3 Datalake Storage and write to SELLOUTBD and SATEL SQL Server instances across VPCs using private subnets and TGW attachments. This pattern eliminates internet exposure, enforces least-privilege IAM roles, and maintains network isolation while enabling seamless ETL connectivity to on-premises-style databases. Fork this diagram on Diagrams.so to customize subnets, add VPC endpoints, or integrate additional SQL Server targets. The architecture demonstrates hybrid cloud best practices: private connectivity, cross-account access control, and centralized monitoring via CloudWatch.

People also ask

How do I securely connect AWS Glue ETL jobs to SQL Server databases in a different AWS account?

Use AWS Transit Gateway to establish private connectivity between your Datalake PRD account (hosting Glue jobs and S3 storage) and LAIVE account (hosting SQL Server EC2 instances). Deploy TGW attachments in private subnets, configure IAM roles for least-privilege access, and monitor data flow via CloudWatch. This eliminates internet exposure while maintaining cross-account isolation.

AWSGlue ETLTransit Gatewaycross-accountSQL Serverdata lake
Domain:
Cloud Aws
Audience:
AWS solutions architects designing cross-account data lake connectivity

Generated by Diagrams.so — AI architecture diagram generator with native Draw.io output. Fork this diagram, remix it, or download as .drawio, PNG, or SVG.

Generate your own networkdiagram →

About This Architecture

Cross-account data lake architecture connecting AWS Glue ETL jobs in Datalake PRD account to legacy SQL Server databases in LAIVE account via AWS Transit Gateway. Data engineers and analytics users trigger Glue jobs that read from S3 Datalake Storage and write to SELLOUTBD and SATEL SQL Server instances across VPCs using private subnets and TGW attachments. This pattern eliminates internet exposure, enforces least-privilege IAM roles, and maintains network isolation while enabling seamless ETL connectivity to on-premises-style databases. Fork this diagram on Diagrams.so to customize subnets, add VPC endpoints, or integrate additional SQL Server targets. The architecture demonstrates hybrid cloud best practices: private connectivity, cross-account access control, and centralized monitoring via CloudWatch.

People also ask

How do I securely connect AWS Glue ETL jobs to SQL Server databases in a different AWS account?

Use AWS Transit Gateway to establish private connectivity between your Datalake PRD account (hosting Glue jobs and S3 storage) and LAIVE account (hosting SQL Server EC2 instances). Deploy TGW attachments in private subnets, configure IAM roles for least-privilege access, and monitor data flow via CloudWatch. This eliminates internet exposure while maintaining cross-account isolation.

Datalake PRD to LAIVE SQL Server Connectivity

AWSadvancedGlue ETLTransit Gatewaycross-accountSQL Serverdata lake
Domain: Cloud AwsAudience: AWS solutions architects designing cross-account data lake connectivity
0 views0 favoritesPublic

Created by

June 4, 2026

Updated

June 4, 2026 at 9:58 PM

Type

network

Need a custom architecture diagram?

Describe your architecture in plain English and get a production-ready Draw.io diagram in seconds. Works for AWS, Azure, GCP, Kubernetes, and more.

Generate with AI