Security Groups Flashcards
How quickly to changes to security groups take effect?
Immediately
Are security groups stateful?
yes
Describe stateful rules
when you add an inbound rule it automatically allows traffic back out
You can delete the “allow all outbound” rule and traffic still leaves if it was allowed in
NACL’s
stateless
stateless
Require explicit inbound and outbound rules
Can you deny traffic with a Security Group?
No
You can only specify allow rules
Can you block an IP address with a Security Group?
No
Use NACL’s for blocking IP’s
Can you add multiple security groups to an instance?
yes
Default state of inbound traffic in a security group
all blocked
Default state of outbound traffic in a security group
all allowed
How many EC2 instances per security group
unlimited