JavaScript must be enabled to correctly display this content
Connect to Amazon DocumentDB
Learn to create a connection to Amazon DocumentDB in OCI GoldenGate.
Before you begin
Ensure that you review the following resources:
Amazon DocumentDB doesn't allow connections outside of
the Amazon VPC, so you must configure Site-to-Site VPN or FastConnect to connect Amazon DocumentDB from OCI GoldenGate.
From the OCI GoldenGate Overview page, click
Connections.
You can also click Create Connection under the
Get started section and skip to step 3.
On the Connections page, click Create Connection.
On the Create Connection page, complete the fields as follows:
For Name, enter a name for the connection.
(Optional) For Description, enter a description that helps
you distinguish this connection from others.
For Compartment, select the compartment in which to create
the connection.
For Type, select Amazon DocumentDB from the
dropdown.
For Connection string, enter a valid Amazon DocumentDB
connection string URI without the username and password. For example,
mongodb://%s:%s@%s/sample-database?ssl=true&replicaSet=rs0&readpreference=%s.
Enter the Username.
Select the Password secret. If located in a different
compartment, use the dropdown to change compartments.
Note:
If you prefer to
use a password secret, select Use vault secrets in the
Settings section of Advanced options located at
the end of the form.
For SSL details, select a Security protocol from the
dropdown:
Plain
TLS
MTLS
Expand Show advanced options. You can configure the following
options:
Security:
Select Use Oracle-managed encryption key to leave all
encryption key management to Oracle.
Select Use customer-managed encryption key to select a
specific encryption key stored in your OCI Vault to encrypt your connection
credentials.
Network connectivity
Shared endpoint, to share an endpoint
with the assigned deployment. You must allow connectivity from the
deployment's ingress IP.
Dedicated endpoint, for network
traffic through a dedicated endpoint in the assigned subnet in your VCN. You
must allow connectivity from this connection's ingress IPs.
Note:
If a dedicated connection remains unassigned for seven
days, then the service converts it to a shared connection.
Deselect Use vault secrets you prefer not to use
password secrets for this connection.
Tags: Add tags to organize your resources.
Click Create.
After the connection is created, it appears in the Connections list. Ensure that you
assign the connection to a deployment to use it as a target in a replication.