RDS Proxy endpoint — the only address a workload should connect to.
The proxy's READ_ONLY endpoint, which multiplexes onto the Aurora reader.
Same proxy, same SG, same rds-db:connect resource id — only the host
differs. For workloads that explicitly opt read paths onto the replica.
The
cfx-dboutputs this helper can emit. Structural, not a re-export of the producing stack's shape — a caller spreads whatever it read offorganization/cfx-db/<stack>and the field names have to match.