AWS VPC安全组中规则的数量如何计算?

发布于 2025-01-30 18:13:19 字数 271 浏览 5 评论 0 原文

在我的控制面板中,我看到了一个安全组,该组有250个规则,但我只在列表中看到两个规则:

”

我想念什么?

In my control panel I see a security group which has a count of 250 rules, but I only see two rules in the list:

security group UI screenshot

What do I miss?

如果你对这篇内容有疑问,欢迎到本站社区发帖提问 参与讨论,获取更多帮助,或者扫码二维码加入 Web 技术交流群。

扫码二维码加入Web技术交流群

发布评论

需要 登录 才能够评论, 你可以免费 注册 一个本站的账号。

评论(2

屌丝范 2025-02-06 18:13:19

好的,这不是故障。与AWS支持交谈后,事实证明,在这种情况下,根据(持有)每个源的最大条目总和计算出的权限条目数(请参阅屏幕快照上的源列)。在这种情况下,来源是托管前缀列表,其中一个条目的最大条目数量为150,另一个条目为100-这是如何击中限制的。

有趣的是,实际记录的数量无关紧要 - 仅限限制(请参阅Manage前缀列表屏幕的屏幕截图)。我将其传递给DevOps,他们处理了它 - 对不起,没有解决方案,但也许可以帮助您找到问题的根源:)

”

Ok, so it's not a glitch. After talking to AWS support, turns out that the number of permission entries in this case is calculated from (hold tight) sum of maximum possible entries of each Source (see the sources column on screenshot). In this case, sources were Managed Prefix Lists, and the maximum number of entries was 150 for one of them and 100 for another - and this how the limit got hit.

Interestingly, the actual number of records didn't matter - only the limit (see screenshot with Manage Prefix List screen). I've passed it on to devops, and they dealt with it - sorry for no solution, but maybe it'd help you to locate the root of your issue :)

enter image description here

时光是把杀猪刀 2025-02-06 18:13:19

您可以参考了解如何创建安全组规则的数量。

还值得注意的是,IPv4和ipv6被分别计数如下所述 - https://docs.aws.aws.amazon.com/vpc/latest/userguide/amazon-vpc-limits.html#vpc-vpc-limits-security-groups (请参阅(请参阅请参见) “每个安全组的入站或出站规则”)

You can refer to https://docs.aws.amazon.com/vpc/latest/userguide/security-group-rules.html#security-group-size to understand how the number of security group rules are created.

It's also worth noting that ipv4 and ipv6 are counted separately as mentioned here - https://docs.aws.amazon.com/vpc/latest/userguide/amazon-vpc-limits.html#vpc-limits-security-groups (see 'Inbound or outbound rules per security group')

~没有更多了~
我们使用 Cookies 和其他技术来定制您的体验包括您的登录状态等。通过阅读我们的 隐私政策 了解更多相关信息。 单击 接受 或继续使用网站,即表示您同意使用 Cookies 和您的相关数据。
原文