官术网_书友最值得收藏!

How it works...

Here we have used variables registered from previous tasks to pass the VPC ID as an input (vpc_id). This task creates a security group with the name my_first_sg. The parameter rules is used for defining all ingress policies and similarly rules_egress for outbound policies. Every block inside ingress rules requires four key bits of information; that is, the protocol (TCP, UDP, or ICMP), the start of the port range (from_port), the end of the port range (to_port), and the CIDR to the whitelist. In all other protocols (except ICMP) we define the port range. But if we choose protocol as ICMP we have to define ICMP code. For example, 8 is used for ICMP echo requests and -1 is a wildcard (that is, any ICMP type number). We have allowed port 80 and port 443 from anywhere; that is 0.0.0.0/0. But port 22 (which is a default port for SSH connections) and all ICMP requests are accessible within the CIDR address space of our VPC. 

We have registered the security group as my_first_sg. We will be using this as a variable in upcoming tasks.
主站蜘蛛池模板: 黄陵县| 望都县| 叶城县| 宁化县| 剑川县| 四子王旗| 天镇县| 延寿县| 侯马市| 东山县| 明水县| 汉寿县| 砀山县| 阜南县| 新闻| 香格里拉县| 同德县| 美姑县| 海丰县| 五莲县| 饶阳县| 姚安县| 正镶白旗| 吴川市| 江城| 鄢陵县| 西华县| 汾西县| 贵德县| 敖汉旗| 凤翔县| 蒙山县| 抚顺市| 西平县| 龙门县| 邵东县| 仁布县| 怀安县| 太谷县| 清水河县| 滨州市|