安全小组不在所有情况下工作
我有3个使用相同安全组的实例,都在同一VPC上。相同的图像,已安装相同的应用程序,相同的端口打开,相同的路由表。唯一的区别是每个都有自己的子网。 我正在尝试在端口5001上使用curl命令,但仅在第一台机器中起作用,该机器位于子网10.0.0.0.0/24上。另外两个是10.0.1.0/24和10.0.2.0/24,它们根本不起作用。 这与路由表有关吗?还因为我进入10.0.0.6机器,并尝试远程触发10.0.1.6或10.0.2.6,它们也不会响应。
(顺便说一句:此开放端口5001是在SG上设置的,是针对另一个公共IP请求的特定的,这是我用来卷曲上面的3个)。
谢谢
I have 3 instances using the same security group, both are on the same VPC as well. Same image, same applications installed, same ports opened, same route table. The only difference is that each one has its own subnet.
I'm trying a curl command on port 5001, but it only works in the first machine, the one who is on the subnet 10.0.0.0/24. The other two are on 10.0.1.0/24 and 10.0.2.0/24, they don't work at all.
Is this something related to the route tables? Cause also if I ssh into the 10.0.0.6 machine and try to telnet the 10.0.1.6 or 10.0.2.6, they don't respond either.
(BTW: This open port 5001 is setted on the SG to be specific for another public IP request, the one I'm using to curl those 3 above).
Thanks
如果你对这篇内容有疑问,欢迎到本站社区发帖提问 参与讨论,获取更多帮助,或者扫码二维码加入 Web 技术交流群。

绑定邮箱获取回复消息
由于您还没有绑定你的真实邮箱,如果其他用户或者作者回复了您的评论,将不能在第一时间通知您!
发布评论
评论(1)
打开端口,您需要从安全组访问,检查并进行检查。如果一切都很好,这可能是路由表问题,您会忘记路由表中的关联子网。如果您在私有子网中启动了其他两个实例,也可能会被诅咒
Open port's which will you need to access From the Security group, check and review it. if all is good this might be a route table issue you forgot the associate subnet in the route table. there also might be cursed if you launched the other two instance in a private subnet