Difference between revisions of "Terraform resource: aws security group"
Jump to navigation
Jump to search
Line 70: | Line 70: | ||
* <code>[[aws_instance]]</code> | * <code>[[aws_instance]]</code> | ||
* <code>[[aws_network_interface_sg_attachment]]</code> | * <code>[[aws_network_interface_sg_attachment]]</code> | ||
+ | * [[aws ec2 create-security-group]] | ||
== See also == | == See also == |
Revision as of 10:19, 21 November 2023
protocol = [tcp|all .../... ]
Examples
resource "aws_security_group" "allow_ssh" { name = "allow_ssh" description = "Allow ssh inbound traffic from Internet" ingress { description = "SSH from Internet" from_port = 22 to_port = 22 protocol = "tcp" cidr_blocks = ["0.0.0.0/0"] ipv6_cidr_blocks = ["::/0"] } tags = { Name = "allow_ssh" } }
resource "aws_security_group" "allow_tls" { name = "allow_tls" description = "Allow TLS inbound traffic" vpc_id = aws_vpc.main.id ingress { description = "TLS from VPC" from_port = 443 to_port = 443 protocol = "tcp" cidr_blocks = [aws_vpc.main.cidr_block] ipv6_cidr_blocks = [aws_vpc.main.ipv6_cidr_block] } egress { from_port = 0 to_port = 0 protocol = "-1" cidr_blocks = ["0.0.0.0/0"] ipv6_cidr_blocks = ["::/0"] } tags = { Name = "allow_tls" } }
Arguments
prefix_list_ids
(optional)
Errors
│ Error: updating Security Group (sg-0bfc4f25123432) ingress rules: authorizing Security Group (ingress) rules: InvalidParameterValue: Invalid value 'http' for IP protocol. Unknown protocol.
Related terms
- Terraform resource:
aws_security_group_rule
- Security group
vpc_id
security_groups, network_configuration
:aws_ecs_service
vpc_security_group_ids
:aws_instance, aws_db_instance
aws_instance
aws_network_interface_sg_attachment
- aws ec2 create-security-group
See also
Advertising: