Receive alerts for endpoint service events
You can create a notification to receive alerts for specific events related to your endpoint service. For example, you can receive an email when a connection request is accepted or rejected.
Create an SNS notification
Use the following procedure to create an Amazon SNS topic for the notifications and subscribe to the topic.
To create a notification for an endpoint service using the console
- Open the Amazon VPC console at https://console.amazonaws.cn/vpc/ - . 
- 
          In the navigation pane, choose Endpoint services. 
- 
          Select the endpoint service. 
- 
          From the Notifications tab, choose Create notification. 
- 
          For Notification ARN, choose the ARN for the SNS topic that you created. 
- 
          To subscribe to an event, select it from Events. - Connect – The service consumer created the interface endpoint. This sends a connection request to the service provider. 
- Accept – The service provider accepted the connection request. 
- Reject – The service provider rejected the connection request. 
- Delete – The service consumer deleted the interface endpoint. 
 
- 
          Choose Create notification. 
To create a notification for an endpoint service using the command line
- 
          create-vpc-endpoint-connection-notification (Amazon CLI) 
- 
          New-EC2VpcEndpointConnectionNotification (Tools for Windows PowerShell) 
Add an access policy
Add an access policy to the SNS topic that allows Amazon PrivateLink to publish notifications
        on your behalf, such as the following. For more information, see How do I edit my Amazon SNS
          topic's access policy?aws:SourceArn and
          aws:SourceAccount global condition keys to protect against the confused deputy problem.
Add a key policy
If you're using encrypted SNS topics, the resource policy for the KMS key must trust Amazon PrivateLink to call Amazon KMS API operations. The following is an example key policy.