documentation.HELP! Amazon Elastic Compute Cloud: 2008-05-05 Documentation

Concepts

Amazon Elastic Compute Cloud: 2008-05-05

previous page next page

Concepts

Security Groups

A security group is a named collection of access rules. These access rules specify which ingress (i.e., incoming) network traffic should be delivered to your instance. All other ingress traffic will be discarded.

You can modify rules for a group at any time. The new rules are automatically enforced for all running instances and instances launched in the future.

[Note] Note

You can create up to 100 security groups.

Group Membership

When you launch an AMI instance, you can assign it to as many groups as you like.

If no groups are specified, the instance is assigned to the default group. By default, this group allows all network traffic from other members of this group and discards traffic from other IP addresses and groups. If this does not meet your needs, you can modify the rule settings of the default group.

Group Access Rights

The access rules define source based access either for named security groups or for IP addresses (i.e., CIDR-based rules). For CIDR-based rules, you can also specify the protocol and port range (or ICMP type/code).

previous page start next page

Menu

  • Homepage

Table of contents

  • What's New
  • Welcome
  • Introduction to Amazon Elastic Compute Cloud
    • What is Amazon EC2?
    • Features of Amazon EC2
    • Popular Uses for Amazon EC2
    • Components of Amazon EC2
    • Paying for Amazon EC2
  • Using Amazon EC2
    • Amazon EC2 Flow
    • Creating and Preparing AMIs
      • Creating an AMI
        • Starting with an Existing AMI
        • Creating an AMI through a Loopback File
      • Bundling an AMI
      • Sharing AMIs
        • Protecting a Shared AMI
        • Sharing AMIs
        • Making an AMI Public
        • Sharing an AMI with Specific Users
        • Publishing Shared AMIs
      • Creating Paid AMIs
        • Amazon DevPay and Paid AMIs
        • Product Registration
        • Associating a Product Code with an AMI
        • Sharing Your Paid AMI with Select Users or the Public
        • Confirming an Instance Is Running an AMI Associated with a Product Code
        • Getting the Product Code from Within an Instance
        • Supported AMIs
    • Launching and Using Instances
      • Instance Usage
      • Instance Types
      • Instance Metadata
      • Instance Storage
      • Availability Zones
      • Using Shared AMIs
      • Paying for AMIs
      • Get Console Output and Reboot Instances
    • Instance Addressing and Network Security
      • Instance Addressing
        • Elastic IP Addresses
      • Network Security
        • Concepts
        • Examples
    • Amazon Elastic Block Store
      • Overview
      • Amazon EBS Concepts
      • Amazon EBS Use Cases
      • Amazon EBS API Overview
      • Creating Amazon EBS Volumes and Snapshots
  • Using the APIs
    • Using the SOAP API
    • Using the Query API
  • API Reference
    • API Conventions
    • API Versioning
    • API Error Codes
    • Data Types
      • Common Data Types
        • AvailabilityZoneItemType
        • BlockDeviceMappingItemType
        • DescribeImagesResponseItemType
        • DescribeKeyPairsResponseItemType
        • EmptyElementType
        • GroupSetType
        • InstanceStateType
        • IpPermissionType
        • LaunchPermissionItemType
        • LaunchPermissionOperationType
        • PlacementRequestType
        • PlacementResponseType
        • ProductCodeItemType
        • ProductInstanceResponseItemType
        • ReservationInfoType
        • RunningInstancesItemType
        • SecurityGroupItemType
        • TerminateInstancesResponseInfoType
        • UserDataType
        • UserIdGroupPairType
      • Amazon EBS Data Types
        • AttachVolumeResponseType
        • AttachVolumeType
        • CreateSnapshotResponseType
        • CreateSnapshotType
        • CreateVolumeResponseType
        • CreateVolumeType
        • DeleteSnapshotResponseType
        • DeleteSnapshotType
        • DeleteVolumeResponseType
        • DeleteVolumeType
        • DescribeSnapshotsResponseType
        • DescribeSnapshotsType
        • DescribeVolumesResponseType
        • DescribeVolumesType
        • DetachVolumeResponseType
        • DetachVolumeType
    • Amazon EC2 SOAP API
      • List of Operations by Function
      • AllocateAddress
      • AssociateAddress
      • AttachVolume
      • AuthorizeSecurityGroupIngress
      • ConfirmProductInstance
      • CreateKeyPair
      • CreateSecurityGroup
      • CreateSnapshot
      • CreateVolume
      • DeleteKeyPair
      • DeleteSecurityGroup
      • DeleteSnapshot
      • DeleteVolume
      • DeregisterImage
      • DescribeAddresses
      • DescribeAvailabilityZones
      • DescribeImageAttribute
      • DescribeImages
      • DescribeInstances
      • DescribeKeyPairs
      • DescribeSecurityGroups
      • DescribeSnapshots
      • DescribeVolumes
      • DetachVolume
      • DisassociateAddress
      • GetConsoleOutput
      • ModifyImageAttribute
      • RebootInstances
      • RegisterImage
      • ReleaseAddress
      • ResetImageAttribute
      • RevokeSecurityGroupIngress
      • RunInstances
      • TerminateInstances
    • Amazon EC2 Query API
      • Common Query Parameters
      • List of Operations by Function
      • AllocateAddress
      • AssociateAddress
      • AttachVolume
      • AuthorizeSecurityGroupIngress
      • ConfirmProductInstance
      • CreateKeyPair
      • CreateSecurityGroup
      • CreateSnapshot
      • CreateVolume
      • DeleteKeyPair
      • DeleteSecurityGroup
      • DeleteSnapshot
      • DeleteVolume
      • DetachVolume
      • DeregisterImage
      • DescribeAddresses
      • DescribeAvailabilityZones
      • DescribeImageAttribute
      • DescribeImages
      • DescribeInstances
      • DescribeKeyPairs
      • DescribeSecurityGroups
      • DescribeSnapshots
      • DescribeVolumes
      • DisassociateAddress
      • GetConsoleOutput
      • ModifyImageAttribute
      • RebootInstances
      • ReleaseAddress
      • RegisterImage
      • ResetImageAttribute
      • RevokeSecurityGroupIngress
      • RunInstances
      • TerminateInstances
  • Command Line Tools Reference
    • AMI Tools
      • ec2-bundle-image
      • ec2-bundle-vol
      • ec2-delete-bundle
      • ec2-download-bundle
      • ec2-unbundle
      • ec2-upload-bundle
    • API Tools
      • List of Operations by Function
      • ec2-add-group
      • ec2-add-keypair
      • ec2-allocate-address
      • ec2-associate-address
      • ec2-attach-volume
      • ec2-authorize
      • ec2-confirm-product-instance
      • ec2-create-snapshot
      • ec2-create-volume
      • ec2-delete-group
      • ec2-delete-keypair
      • ec2-delete-snapshot
      • ec2-delete-volume
      • ec2-deregister
      • ec2-describe-addresses
      • ec2-disassociate-address
      • ec2-describe-availability-zones
      • ec2-describe-group
      • ec2-describe-image-attribute
      • ec2-describe-images
      • ec2-describe-instances
      • ec2-describe-keypairs
      • ec2-detach-volume
      • ec2-describe-snapshots
      • ec2-describe-volumes
      • ec2-fingerprint-key
      • ec2-get-console-output
      • ec2-modify-image-attribute
      • ec2-reboot-instances
      • ec2-release-address
      • ec2-register
      • ec2-reset-image-attribute
      • ec2-revoke
      • ec2-run-instances
      • ec2-terminate-instances
  • Technical FAQ
    • General Information
    • Operation Information
    • Instance Types and Architectures
    • IP Information
    • Availability Zones
    • Monitoring, Errors, and Unexpected Behavior
    • Error Messages
    • Paid AMIs
    • Kernels, RAM Disks, and Block Device Mappings
    • Miscellaneous
  • Glossary
  • Document Conventions
  • Index

Get in touch

Submit feedback about this site to:

  • [email protected]

© documentation.help. Design: rehmann.co.