官术网_书友最值得收藏!

How it works...

Here we have used variables registered from previous tasks to pass the VPC ID as an input (vpc_id). This task creates a security group with the name my_first_sg. The parameter rules is used for defining all ingress policies and similarly rules_egress for outbound policies. Every block inside ingress rules requires four key bits of information; that is, the protocol (TCP, UDP, or ICMP), the start of the port range (from_port), the end of the port range (to_port), and the CIDR to the whitelist. In all other protocols (except ICMP) we define the port range. But if we choose protocol as ICMP we have to define ICMP code. For example, 8 is used for ICMP echo requests and -1 is a wildcard (that is, any ICMP type number). We have allowed port 80 and port 443 from anywhere; that is 0.0.0.0/0. But port 22 (which is a default port for SSH connections) and all ICMP requests are accessible within the CIDR address space of our VPC. 

We have registered the security group as my_first_sg. We will be using this as a variable in upcoming tasks.
主站蜘蛛池模板: 西华县| 渭南市| 河间市| 盐亭县| 甘德县| 明星| 东丰县| 瑞昌市| 武陟县| 仁寿县| 满城县| 闸北区| 仪征市| 宜兴市| 洞头县| 正阳县| 麦盖提县| 淮南市| 青岛市| 泰顺县| 松溪县| 于都县| 武城县| 青冈县| 阜新市| 工布江达县| 疏附县| 西昌市| 清丰县| 高清| 扎囊县| 白城市| 刚察县| 嘉善县| 从江县| 古田县| 井研县| 密云县| 定远县| 大理市| 葵青区|