9- AWS-Networking-Dashboard-3
IT Network Learning
0:00 / 0:00
9- AWS-Networking-Dashboard-3
3 просмотра · 6 дней назад
IT Network Learning
13 подписчиков
3 просмотра · 6 дней назад
Dashboard and Counting Services
A security group (SG) is a stateful firewall on each instance's network interface (ENI). In Cisco terms, it works like a reflexive ACL applied to one interface.
In this video, we will create the security groups inbound and outbound.
Stateful: If inbound traffic is allowed, the reply is allowed back out automatically
Allow rules only: You can't write a deny rule. Anything not allowed is dropped
Default: All inbound blocked, all outbound allowed
Applies to: Instances / ENIs, not subnets (NACLs work at the subnet level)
Source: Can be a CIDR or another SG, e.g. "allow from the web-tier SG"
#awsnetworking
#aws #itnetworking #itnetworklearning
#ec2instance #SecurityGroup
#bastions