forked from docs/doc-exports
ELB_UMN_0727
Reviewed-by: Hajba, László Antal <laszlo-antal.hajba@t-systems.com> Co-authored-by: zhoumeng <zhoumeng35@huawei.com> Co-committed-by: zhoumeng <zhoumeng35@huawei.com>
This commit is contained in:
parent
5f74a04a37
commit
3ae8fd627a
@ -4,7 +4,7 @@
|
|||||||
<div id="body8662426"><div class="section" id="elb_ug_hd_0007__en-us_topic_0000001390784280_section1348015542318"><h4 class="sectiontitle">Scenarios</h4><p id="elb_ug_hd_0007__en-us_topic_0000001390784280_p17781426131413">To ensure normal communications between the load balancer and backend servers, you need to check the security group rules and <span id="elb_ug_hd_0007__ph664510242492">firewall</span> rules configured for the backend servers.</p>
|
<div id="body8662426"><div class="section" id="elb_ug_hd_0007__en-us_topic_0000001390784280_section1348015542318"><h4 class="sectiontitle">Scenarios</h4><p id="elb_ug_hd_0007__en-us_topic_0000001390784280_p17781426131413">To ensure normal communications between the load balancer and backend servers, you need to check the security group rules and <span id="elb_ug_hd_0007__ph664510242492">firewall</span> rules configured for the backend servers.</p>
|
||||||
<ul id="elb_ug_hd_0007__en-us_topic_0000001390784280_ul176761326526"><li id="elb_ug_hd_0007__en-us_topic_0000001390784280_li9676122205214">Security group rules must allow traffic from the backend subnet where the load balancer resides to the backend servers. (By default, the backend subnet of a load balancer is the same as the subnet where the load balancer resides.) For details about how to configure security group rules, see <a href="#elb_ug_hd_0007__en-us_topic_0000001390784280_section20777195619242">Configuring Security Group Rules</a>.</li></ul>
|
<ul id="elb_ug_hd_0007__en-us_topic_0000001390784280_ul176761326526"><li id="elb_ug_hd_0007__en-us_topic_0000001390784280_li9676122205214">Security group rules must allow traffic from the backend subnet where the load balancer resides to the backend servers. (By default, the backend subnet of a load balancer is the same as the subnet where the load balancer resides.) For details about how to configure security group rules, see <a href="#elb_ug_hd_0007__en-us_topic_0000001390784280_section20777195619242">Configuring Security Group Rules</a>.</li></ul>
|
||||||
<ul id="elb_ug_hd_0007__en-us_topic_0000001390784280_ul198075813526"><li id="elb_ug_hd_0007__en-us_topic_0000001390784280_li7808289526"><span id="elb_ug_hd_0007__ph347075254917">Firewall</span> rules are optional for subnets. If <span id="elb_ug_hd_0007__ph12471185210496">firewall</span> rules are configured for the backend subnet of the load balancer, the <span id="elb_ug_hd_0007__ph12473105244917">firewall</span> rules must allow traffic from the backend subnet of the load balancer to the backend servers. For details about how to configure rules, see <a href="#elb_ug_hd_0007__en-us_topic_0000001390784280_section1261104918577">Configuring Firewall Rules</a>.</li></ul>
|
<ul id="elb_ug_hd_0007__en-us_topic_0000001390784280_ul198075813526"><li id="elb_ug_hd_0007__en-us_topic_0000001390784280_li7808289526"><span id="elb_ug_hd_0007__ph347075254917">Firewall</span> rules are optional for subnets. If <span id="elb_ug_hd_0007__ph12471185210496">firewall</span> rules are configured for the backend subnet of the load balancer, the <span id="elb_ug_hd_0007__ph12473105244917">firewall</span> rules must allow traffic from the backend subnet of the load balancer to the backend servers. For details about how to configure rules, see <a href="#elb_ug_hd_0007__en-us_topic_0000001390784280_section1261104918577">Configuring Firewall Rules</a>.</li></ul>
|
||||||
<div class="note" id="elb_ug_hd_0007__en-us_topic_0000001390784280_note191628234314"><img src="public_sys-resources/note_3.0-en-us.png"><span class="notetitle"> </span><div class="notebody"><p id="elb_ug_hd_0007__p196081050958">If <strong id="elb_ug_hd_0007__b155951371699">Transfer Client IP Address</strong> is enabled for TCP or UDP listeners, <span id="elb_ug_hd_0007__ph1559517378920">firewall</span> rules and security group rules will not take effect.</p>
|
<div class="note" id="elb_ug_hd_0007__en-us_topic_0000001390784280_note191628234314"><img src="public_sys-resources/note_3.0-en-us.png"><span class="notetitle"> </span><div class="notebody"><p id="elb_ug_hd_0007__p196081050958">If the load balancer has Layer 4 listeners and <strong id="elb_ug_hd_0007__b460161314514">IP as a Backend</strong> is disabled, <span id="elb_ug_hd_0007__ph126001355117">firewall</span> rules and security group rules will not take effect.</p>
|
||||||
<p id="elb_ug_hd_0007__en-us_topic_0000001390784280_p1316102315210">You can use access control to limit which IP addresses are allowed to access the listener. Learn how to configure <a href="elb_03_0003.html">Access Control</a>.</p>
|
<p id="elb_ug_hd_0007__en-us_topic_0000001390784280_p1316102315210">You can use access control to limit which IP addresses are allowed to access the listener. Learn how to configure <a href="elb_03_0003.html">Access Control</a>.</p>
|
||||||
</div></div>
|
</div></div>
|
||||||
</div>
|
</div>
|
||||||
|
@ -2,8 +2,8 @@
|
|||||||
|
|
||||||
<h1 class="topictitle1">Access Logging</h1>
|
<h1 class="topictitle1">Access Logging</h1>
|
||||||
<div id="body8662426"><div class="section" id="elb_ug_rz_0000__en-us_topic_0000001819164194_section175377416919"><h4 class="sectiontitle">Scenarios</h4><p id="elb_ug_rz_0000__en-us_topic_0000001819164194_p1220239164010">ELB logs HTTP and HTTPS requests received by load balancers, including the time when the request was sent, client IP address, request path, and server response.</p>
|
<div id="body8662426"><div class="section" id="elb_ug_rz_0000__en-us_topic_0000001819164194_section175377416919"><h4 class="sectiontitle">Scenarios</h4><p id="elb_ug_rz_0000__en-us_topic_0000001819164194_p1220239164010">ELB logs HTTP and HTTPS requests received by load balancers, including the time when the request was sent, client IP address, request path, and server response.</p>
|
||||||
<p id="elb_ug_rz_0000__en-us_topic_0000001819164194_p936813634013">With Log Tank Service (LTS), you can view logs of requests to load balancers at Layer 7 and analyze response status codes to quickly locate unhealthy backend servers.</p>
|
<p id="elb_ug_rz_0000__en-us_topic_0000001819164194_p1517249102112">With Log Tank Service (LTS), you can view logs of requests to load balancers at Layer 7 and analyze response status codes to quickly locate unhealthy backend servers.</p>
|
||||||
<div class="note" id="elb_ug_rz_0000__en-us_topic_0000001819164194_note18898177181519"><img src="public_sys-resources/note_3.0-en-us.png"><span class="notetitle"> </span><div class="notebody"><p id="elb_ug_rz_0000__en-us_topic_0000001819164194_p9898187191513">ELB displays operations data, such as access logs, on the LTS console. Do not transmit private or sensitive data through fields in access logs. Encrypt your sensitive data if necessary.</p>
|
<div class="note" id="elb_ug_rz_0000__en-us_topic_0000001819164194_note18898177181519"><img src="public_sys-resources/note_3.0-en-us.png"><span class="notetitle"> </span><div class="notebody"><ul id="elb_ug_rz_0000__ul8764172213270"><li id="elb_ug_rz_0000__li07641228274">ELB displays operations data, such as access logs, on the LTS console. Do not transmit private or sensitive data through fields in access logs. Encrypt your sensitive data if necessary.</li><li id="elb_ug_rz_0000__en-us_topic_0242751126_li0284142520492">Currently, access logging is not supported in the <strong id="elb_ug_rz_0000__b194981840183213">eu-nl</strong> region.</li></ul>
|
||||||
</div></div>
|
</div></div>
|
||||||
</div>
|
</div>
|
||||||
<div class="section" id="elb_ug_rz_0000__en-us_topic_0000001819164194_section97361345495"><h4 class="sectiontitle">Notes and Constraints</h4><ul id="elb_ug_rz_0000__en-us_topic_0000001819164194_ul1713832394517"><li id="elb_ug_rz_0000__en-us_topic_0000001819164194_li6245142420456">Access logs can be configured only for application (Layer 7) load balancers.</li><li id="elb_ug_rz_0000__en-us_topic_0000001819164194_li101384231457">The access logs do not contain requests whose return code is <strong id="elb_ug_rz_0000__en-us_topic_0000001819164194_b1684783318512">400 Bad Request</strong>. This is because such requests do not comply with HTTP specification and cannot be processed properly.</li></ul>
|
<div class="section" id="elb_ug_rz_0000__en-us_topic_0000001819164194_section97361345495"><h4 class="sectiontitle">Notes and Constraints</h4><ul id="elb_ug_rz_0000__en-us_topic_0000001819164194_ul1713832394517"><li id="elb_ug_rz_0000__en-us_topic_0000001819164194_li6245142420456">Access logs can be configured only for application (Layer 7) load balancers.</li><li id="elb_ug_rz_0000__en-us_topic_0000001819164194_li101384231457">The access logs do not contain requests whose return code is <strong id="elb_ug_rz_0000__en-us_topic_0000001819164194_b1684783318512">400 Bad Request</strong>. This is because such requests do not comply with HTTP specification and cannot be processed properly.</li></ul>
|
||||||
|
Loading…
x
Reference in New Issue
Block a user