What is the 'egress trap' and how do I avoid it with my cloud setup?
CloudFrontorigins correctly, that I'm missing?
CloudFrontorigins correctly, that I'm missing?
CloudFront) to use your S3 bucket as a private origin via a custom
Origin Access Control (OAC)identity, preventing users from bypassing the CDN and accessing S3 directly, which would incur expensive direct transfer fees. Furthermore, serve all static assets exclusively through the CDN endpoint and aggressively leverage caching headers to reduce origin fetches. For internal services, utilize VPC endpoints and private connectivity to keep inter-service traffic within the cloud network, avoiding public internet egress charges entirely.
This is a public discussion. Create a free account to answer. Takes 20 seconds. No email gates.
In total there are 87 users online: 0 registered, 80 guests and 7 bots.
Most users ever online was 5,555 on 17 Jul 2026, 3:23 am.
Users active in the past 15 minutes. Total registered members: 369
Cookie preferences
Each category below sets a Google Consent Mode v2 signal. Necessary cookies cannot be switched off because they keep the site working. Everything else defaults to off until you choose.
Strictly necessary
Login, session, security and load-balancing cookies. Without these the site does not work.
Analytics
Google Analytics 4 (page views, time on page, source attribution). Aggregated only, never sold.
Advertising
Google AdSense and ad measurement tags. Without this category, ads are non-personalised (cookieless).
Personalisation
Remember preferences such as theme, language, and reading position so they persist between visits.