为了在AWS上面建立一套int环境,我们起了一些instance。为了系统安全,我们通过security group限制只有内部ip才能够访问。但是当我们启动一个LB的时候,无论如何都不能health check成功。通过查看网上的文章,竟然是security group限制了LB的访问!
In an ongoing effort to keep my company’s servers as secure as
possible I decided I was going to lock down port 80 and 443 to only
accept traffic from specific servers that needed access. Should be easy
enough I thought, I could simply setup up the security group and
restrict the source IP or group. I setup a test EC2 instance and ran a
quick test pointing directly to the instance and it worked. I then
added the rules to the production security group and thought all was
well. Not so fast … I failed to remember that the Elastic Load Balancer
(ELB) needs to perform health checks on each instance to confirm they
are running. The problem here is you cannot tell what IP address the
ELB is using to add to the security group and you cannot assign a
security group to the ELB.
By adding amazon-elb/amazon-elb-sg
to the source of the security group. It can then permit the access from the LBR only.
分享到:
相关推荐
AWS EC2 API (English Version)
aws-ec2-assign-elastic-ip, 自动分配弹性ip到 AWS EC2自动缩放组实例 aws-ec2-assign-elastic-ip 自动分配弹性ip到 AWS EC2实例。 在自动缩放组中,这可以能非常好,你需要通信ip第三方系统。应该在应该分配有弹性...
AWS EC2 实例配置和价格对比
aws用户
aws-java-sdk-ec2-1.11.277.jar
Amazon AWS EC2注册+绑定tk域名+域名邮箱绑定+SSL证书申请绑定+博客+搭建API+embr+FTP.本
代码主要是启动、暂停AWS EC2实例或修改实例类型的demo。 注:执行main()之前先修改aws.accessKeyId和aws.secretAccessKey以及instance_id。
AWS EC2示例的详细解释,有助于更好的理解AWS EC2示例
aws-ec2-调度程序定期启动和关闭 AWS EC2 实例的调度程序安装如果您全局安装了 composer,只需运行 composer install否则从获取作曲家配置将 config/settings.yml.dist 文件复制到 config/settings.yml 并设置aws_...
有关aws ec2配置部署的工作手册,希望能给同样才接触的朋友们一点帮助。由于才接触这方面的知识,如有错误,希望斧正。
[AWS][教學]_AWS基本使用#03._建立EC2_instance(Ubuntu)
精品AWS EC2用户指南, 高清,压箱底资料.pdf
terraform-aws-ec2-instance:Terraform模块,可在AWS上创建EC2实例
标签:aws-ec2-1.6.3.jar,aws,ec2,1.6.3,jar包下载,依赖包
标签:aws-ec2-1.6.3-javadoc.jar,aws,ec2,1.6.3,javadoc,jar包下载,依赖包
标签:aws-ec2-1.7.3-sources.jar,aws,ec2,1.7.3,sources,jar包下载,依赖包
$ npm install aws-ec2-running 用法 var createQuery = require ( 'aws-ec2-running' ) ; createQuery(opts [,clbk]) 创建一个新的Query实例,以从检索running EC2实例的列表。 var opts = { 'key' : '...
AWS-CLI-EC2-ELB-ASG-CloudWatch操作指南 核心指导文档
此存储库显示了在Amazon Linux 2 EC2实例上配置AWS CLI并能够执行命令(例如列出用户的S3存储桶)的步骤。 可以使用其他Amazon Machine Image(AMI)(例如Windows,macOS和Redhat)来应用这些步骤。 笔记: 请记住...