Yandex Cloud
Search
Discuss with expertTry it for free
  • Customer Stories
  • Documentation
  • Blog
  • All Services
    • Cloud Interconnect
    • Cloud Backup
    • Cloud Registry
    • Yandex AI Studio
    • Compute Cloud
    • Object Storage
    • Managed Service for Kubernetes®
    • Yandex BareMetal
    • Smart Web Security
    • Security Deck
    • Managed Service for PostgreSQL
    • Managed Service for ClickHouse®
    • Monium
    • Cloud CDN
    • Network Load Balancer
    • Virtual Private Cloud
    • Cloud DNS
    • Application Load Balancer
    • Yandex Cloud Video
    • Stackland
    • Yandex Cloud Router
    • Yandex Managed Service for Trino
    • Managed Service for MySQL®
    • Managed Service for Valkey™
    • Managed Service for Apache Spark™
    • Yandex StoreDoc
    • Managed Service for OpenSearch
    • Managed Service for Apache Kafka®
    • Data Transfer
    • Yandex MPP Analytics Engine for PostgreSQL
    • Yandex Managed Service for Apache Airflow®
    • Data Processing
    • Yandex MetaData Hub
    • Managed Service for YDB
    • Managed Service for Sharded PostgreSQL
    • Managed Service for YTsaurus
    • Yandex WebSQL
    • DataLens
    • Yandex Search API
    • SpeechSense
    • SpeechKit
    • DataSphere
    • Vision OCR
    • Translate
    • Yandex Identity Hub
    • Key Management Service
    • Certificate Manager
    • Yandex Lockbox
    • Audit Trails
    • SmartCaptcha
    • Cloud Desktop
    • SourceCraft Code Assistant
    • Container Registry
    • Managed Service for GitLab
    • Managed Service for Prometheus®
    • Cloud Functions
    • API Gateway
    • Yandex Cloud Postbox
    • Message Queue
    • Serverless Integrations
    • IoT Core
    • Data Streams
    • Serverless Containers
    • Cloud Notification Service
    • Yandex Query
    • Identity and Access Management
    • Yandex Cloud Console
    • Resource Manager
    • Yandex Cloud Billing
    • Yandex Cloud Quota Manager
    • Cloud Apps
  • System Status
  • Marketplace
    • Featured
    • Infrastructure & Network
    • Data Platform
    • AI for business
    • Security
    • DevOps tools
    • Serverless
    • Monitoring & Resources
  • All Solutions
    • By industry
    • By use case
    • Economics and Pricing
    • Security
    • Technical Support
    • Start testing with double trial credits
    • Cloud credits to scale your IT product
    • Gateway to Russia
    • Cloud for Startups
    • Center for Technologies and Society
    • Yandex Cloud Partner program
    • Price calculator
    • Pricing plans
  • Customer Stories
  • Documentation
  • Blog
© 2026 Direct Cursus Technology L.L.C.
Yandex Serverless Containers
  • Comparing with other Yandex Cloud services
    • Overview
    • Container
    • Invoking a container
    • Asynchronous container invocation
    • Runtime
    • Networking
    • Mounting external resources to a container file system
    • Long-lived containers
    • Container termination notifications
    • Dead Letter Queue
    • Container logs
    • Backups
    • Quotas and limits
  • Access management
  • Tools
  • Pricing policy
  • Terraform reference
  • Monitoring metrics
  • Audit Trails events
  • Public materials
  • Release notes
  • FAQ
  1. Concepts
  2. Networking

Networking in Serverless Containers

Written by
Yandex Cloud
Updated at May 19, 2026
View in Markdown

By default, the container is launched in the isolated IPv4 network with the enabled NAT gateway. For this reason, only public IPv4 addresses are available from the container.

User networkUser network

If necessary, you can specify a cloud network in container settings. In this case, it will have access to the internet and user resources in the specified network, such as databases and VMs.

A cloud network must have:

  • Subnets in all availability zones.
  • At least one resource with an IP address in the specified cloud network.

Note

If the network does not meet the conditions above, the service does not guarantee it will function properly.

If the user specifies a network in the container settings, this will create a service subnet with addresses from the 198.19.0.0/16 range for each availability zone. Once run, the container will be assigned an IP address from the respective subnet and will have access to all network resources.

Note

198.19.0.0/16 service subnets are not displayed in the Yandex Cloud interface. When setting up security groups, you should consider this address range in your incoming and outgoing traffic rules.

Networking between two containers, as well as between containers and user resources, is limited:

  • Outbound connections over TCP, UDP, and ICMP are supported. For example, a container may access a Compute Cloud VM or Managed Service for YDB database in the user network.
  • Inbound connections are not supported. For example, there is no way to access the application port inside a container even if you know the IP address of a container instance.

It may take longer than usual to run a new instance of the container whose settings specify the network. Regardless of the settings, any container is only invoked via a public API. Learn more about invoking a container.

To delete the network specified in the container, delete all the functions, containers, and API gateways it was set in and wait from 15 minutes to 24 hours.

Was the article helpful?

Previous
Runtime
Next
Mounting external resources to a container file system
© 2026 Direct Cursus Technology L.L.C.