官术网_书友最值得收藏!

How it works...

Here we have used variables registered from previous tasks to pass the VPC ID as an input (vpc_id). This task creates a security group with the name my_first_sg. The parameter rules is used for defining all ingress policies and similarly rules_egress for outbound policies. Every block inside ingress rules requires four key bits of information; that is, the protocol (TCP, UDP, or ICMP), the start of the port range (from_port), the end of the port range (to_port), and the CIDR to the whitelist. In all other protocols (except ICMP) we define the port range. But if we choose protocol as ICMP we have to define ICMP code. For example, 8 is used for ICMP echo requests and -1 is a wildcard (that is, any ICMP type number). We have allowed port 80 and port 443 from anywhere; that is 0.0.0.0/0. But port 22 (which is a default port for SSH connections) and all ICMP requests are accessible within the CIDR address space of our VPC. 

We have registered the security group as my_first_sg. We will be using this as a variable in upcoming tasks.
主站蜘蛛池模板: 曲阳县| 怀安县| 石林| 新安县| 始兴县| 龙里县| 佛山市| 建平县| 霍州市| 沙坪坝区| 同德县| 涪陵区| 太和县| 阜城县| 织金县| 衡山县| 正镶白旗| 安多县| 沂源县| 教育| 宁陵县| 罗城| 青河县| 十堰市| 大丰市| 丰顺县| 西乡县| 土默特左旗| 黔西县| 合阳县| 焉耆| 灌阳县| 曲阳县| 山西省| 北宁市| 含山县| 淮北市| 桐柏县| 嘉荫县| 台北市| 赞皇县|