Overview
The Enterprise pattern delivers the highest level of infrastructure capability. It combines large compute allocations, KMS encryption across all data stores, advanced database insights, read replicas, VPC endpoints, and S3-backed flow logs with 365-day retention.Architecture
What’s Included
| Resource | Configuration |
|---|---|
| Compute | ECS Fargate, 2048 CPU, 4096 MiB memory |
| Scaling | 6 desired tasks, scales to 100 |
| Database | Aurora with 2 readers, KMS encryption, 35-day backup |
| Proxy | RDS Proxy with TLS required |
| Insights | Advanced Database Insights with KMS-encrypted storage |
| Read Replica | Included (Instance type) |
| Network | 3 AZs, 3 NAT Gateways |
| VPC Endpoints | ECR, Secrets Manager, KMS, CloudWatch Logs |
| Flow Logs | S3 destination, 365-day retention |
| Encryption | KMS customer-managed keys for storage and insights |
| Backup | Enterprise-tier AWS Backup |
| Lambda | 1024 MB memory, 300s timeout (if added) |
Generated Infrastructure
When you create an enterprise app, Fjall generates aninfrastructure.ts file similar to:
Enterprise vs Resilient
| Feature | Resilient | Enterprise |
|---|---|---|
| CPU / Memory | 1024 / 2048 MiB | 2048 / 4096 MiB |
| Desired Tasks | 4 | 6 |
| Max Tasks | 20 | 100 |
| Database (default) | Aurora | Aurora |
| Instance size (if Instance type chosen) | r7g.large | r7g.xlarge |
| Read Replica | No | Yes |
| VPC Endpoints | Secrets Manager | ECR, Secrets Manager, KMS, CloudWatch |
| Flow Logs | CloudWatch (90 days) | S3 (365 days) |
| Lambda Memory | 512 MB | 1024 MB |
| Lambda Timeout | 120s | 300s |
| Backup | Standard | Enterprise |
When to Use
Enterprise is designed for:- Regulated industries (finance, healthcare) requiring audit trails and encryption
- High-throughput applications that need 100+ concurrent tasks
- Workloads that require VPC endpoints to keep traffic off the public internet
- Organisations with compliance requirements for long-term log retention
Cost Considerations
Enterprise infrastructure runs at higher baseline cost due to:- 6 Fargate tasks running continuously (2 vCPU / 4 GB each)
- 3 NAT Gateways (one per AZ)
- Aurora with 2 readers and RDS Proxy
- VPC Interface Endpoints (per-hour charge per endpoint per AZ)
- S3 flow log storage (365-day retention)
Next Steps
Deploy Application
Deploy your enterprise app to AWS
Add Resources
Extend with storage, messaging, or CDN
Compute Factory
Customise compute configuration
Database Factory
Customise database configuration