官术网_书友最值得收藏!

How it works...

Here we have used variables registered from previous tasks to pass the VPC ID as an input (vpc_id). This task creates a security group with the name my_first_sg. The parameter rules is used for defining all ingress policies and similarly rules_egress for outbound policies. Every block inside ingress rules requires four key bits of information; that is, the protocol (TCP, UDP, or ICMP), the start of the port range (from_port), the end of the port range (to_port), and the CIDR to the whitelist. In all other protocols (except ICMP) we define the port range. But if we choose protocol as ICMP we have to define ICMP code. For example, 8 is used for ICMP echo requests and -1 is a wildcard (that is, any ICMP type number). We have allowed port 80 and port 443 from anywhere; that is 0.0.0.0/0. But port 22 (which is a default port for SSH connections) and all ICMP requests are accessible within the CIDR address space of our VPC. 

We have registered the security group as my_first_sg. We will be using this as a variable in upcoming tasks.
主站蜘蛛池模板: 崇州市| 滦平县| 泸定县| 涞水县| 冕宁县| 三门县| 柳河县| 长阳| 沙坪坝区| 长沙县| 顺昌县| 马公市| 上蔡县| 海原县| 鹰潭市| 元氏县| 咸宁市| 疏附县| 南城县| 孟村| 海林市| 仙居县| 尼木县| 南和县| 阳原县| 尚义县| 多伦县| 徐闻县| 遵义市| 武清区| 灵石县| 稷山县| 桐庐县| 休宁县| 塔河县| 牙克石市| 天柱县| 太白县| 什邡市| 绥阳县| 阆中市|