How to define the security group explicitly¶
If users do not want the orchestration engine to auto-generate security groups for them, they can define the security groups explicitly on a Port as follows: * Drop a SecurityGroup node to the editor. * Connect on the dependency point of a Port to the feature point of the SecurityGroup.
data:image/s3,"s3://crabby-images/a9650/a9650640bfef81849dbcbe34cb8b6c585120eae1" alt="../_images/7-Bash-secgroup-explicit.png"
Figure 1. Define security group explicitly¶
Drop one or more SecurityGroupRule component on the SecurityGroup. The figure below shows an inbound rule on port
8080
from the remote0.0.0.0/0
.
data:image/s3,"s3://crabby-images/30202/302029034e58d592164e616f650b934932caa591" alt="../_images/7-Bash-secgroup-rule-explicit.png"
Figure 2. An example of security group rule¶