You can install a private network interface controller (NIC) in Managed Service for Grafana. This way, Grafana workspaces can access data sources and domain names in a virtual private cloud (VPC) that is inaccessible over the Internet.
Prerequisites
Managed Service for Grafana Pro or Advanced Edition is activated.
This feature is available only for Grafana workspaces created after August 31, 2023.
The VPC and Grafana workspaces must be in the same region.
Procedure
Log on to the ARMS console. In the left-side navigation pane, choose .
On the Workspace Management page, click the ID of the workspace that you want to manage.
In the left-side navigation pane, click Whitelists and Security Groups. On the Private IP Address Whitelist tab page, click Enable Private Endpoint. In the dialog box that appears, set VPC, vSwitch, and Security Group, and click Activate.
If the settings are successful, the Private IP Address Whitelist tab page displays information such as the VPC, vSwitch, security group, private domain name, and security group policy.

The Basic Information page also displays the private domain name.

Related steps
To configure security group rules, click Configure Security Group Rules in the upper right corner of the Private IP Address Whitelist tab page, and configure the rules as prompted in the Elastic Compute Service (ECS) console.
To uninstall the private NIC and disable the domain name, click Disable Private Endpoint on the Private IP Address Whitelist page, and click OK in the dialog box that appears.