Terraform resource: aws security group
Jump to navigation
Jump to search
vpc_id ingress, egress protocol = [tcp|all .../... ] security_groups (optional) ref
Examples[edit]
resource "aws_security_group" "allow_ssh" {
name = "allow_ssh"
description = "Allow ssh inbound traffic from Internet"
ingress {
description = "SSH from Internet"
from_port = 22
to_port = 22
protocol = "tcp"
cidr_blocks = ["0.0.0.0/0"]
ipv6_cidr_blocks = ["::/0"]
}
tags = {
Name = "allow_ssh"
}
}
resource "aws_security_group" "allow_tls" {
name = "allow_tls"
description = "Allow TLS inbound traffic"
vpc_id = aws_vpc.main.id
ingress {
description = "TLS from VPC"
from_port = 443
to_port = 443
protocol = "tcp"
cidr_blocks = [aws_vpc.main.cidr_block]
ipv6_cidr_blocks = [aws_vpc.main.ipv6_cidr_block]
}
egress {
from_port = 0
to_port = 0
protocol = "-1"
cidr_blocks = ["0.0.0.0/0"]
ipv6_cidr_blocks = ["::/0"]
}
tags = {
Name = "allow_tls"
}
}
Arguments[edit]
prefix_list_ids(optional)
Errors[edit]
│ Error: updating Security Group (sg-0bfc4f25123432) ingress rules: authorizing Security Group (ingress) rules: InvalidParameterValue: Invalid value 'http' for IP protocol. Unknown protocol.
Related terms[edit]
- Terraform resource:
aws_security_group_rule - Security group
vpc_idsecurity_groups, network_configuration:aws_ecs_servicevpc_security_group_ids:aws_instance, aws_db_instanceaws_instanceaws_network_interface_sg_attachmentaws ec2 create-security-groupaws_vpc_security_group_egress_rule
See also[edit]
Advertising: