VPC UMN 20230106 version
Reviewed-by: Hajba, László Antal <laszlo-antal.hajba@t-systems.com> Co-authored-by: Qin Ying, Fan <fanqinying@huawei.com> Co-committed-by: Qin Ying, Fan <fanqinying@huawei.com>
@ -1,7 +1,7 @@
|
||||
<a name="FlowLog_0001"></a><a name="FlowLog_0001"></a>
|
||||
|
||||
<h1 class="topictitle1">VPC Flow Log </h1>
|
||||
<div id="body8662426"></div>
|
||||
<h1 class="topictitle1">VPC Flow Log</h1>
|
||||
<div id="body1547961960823"></div>
|
||||
<div>
|
||||
<ul class="ullinks">
|
||||
<li class="ulchildlink"><strong><a href="FlowLog_0002.html">VPC Flow Log Overview</a></strong><br>
|
||||
@ -15,9 +15,5 @@
|
||||
<li class="ulchildlink"><strong><a href="FlowLog_0005.html">Deleting a VPC Flow Log</a></strong><br>
|
||||
</li>
|
||||
</ul>
|
||||
|
||||
<div class="familylinks">
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="vpc_newui_0000.html">Operation Guide (New Console Edition)</a></div>
|
||||
</div>
|
||||
</div>
|
||||
|
||||
|
@ -1,11 +1,11 @@
|
||||
<a name="FlowLog_0002"></a><a name="FlowLog_0002"></a>
|
||||
|
||||
<h1 class="topictitle1">VPC Flow Log Overview</h1>
|
||||
<div id="body8662426"><p id="FlowLog_0002__en-us_topic_0151014680_p8060118">A VPC flow log records information about the traffic going to and from a VPC. VPC flow logs help you monitor network traffic, analyze network attacks, and determine whether security group and <span id="FlowLog_0002__en-us_topic_0151014680_text11248715171311">firewall</span><span id="FlowLog_0002__en-us_topic_0151014680_text45551720134"></span> rules require modification.</p>
|
||||
<p id="FlowLog_0002__en-us_topic_0151014680_p38692616421">VPC flow logs must be used together with the Log Tank Service (LTS). Before you create a VPC flow log, you need to create a log group and a log topic in LTS. <a href="#FlowLog_0002__en-us_topic_0151014680_fig1535115691415">Figure 1</a> shows the process for configuring the VPC flow log function.</p>
|
||||
<div class="fignone" id="FlowLog_0002__en-us_topic_0151014680_fig1535115691415"><a name="FlowLog_0002__en-us_topic_0151014680_fig1535115691415"></a><a name="en-us_topic_0151014680_fig1535115691415"></a><span class="figcap"><b>Figure 1 </b>Configuring the VPC flow log function</span><br><span><img class="vsd" id="FlowLog_0002__en-us_topic_0151014680_image9661037927" src="en-us_image_0162336264.png"></span></div>
|
||||
<p id="FlowLog_0002__en-us_topic_0151014680_p1137789316"></p>
|
||||
<div class="section" id="FlowLog_0002__en-us_topic_0151014680_section1095231112517"><h4 class="sectiontitle">Notes and Constraints</h4><ul id="FlowLog_0002__en-us_topic_0151014680_ul18195045135317"><li id="FlowLog_0002__en-us_topic_0151014680_li13405622115110">Currently, only C3, M3, and S2 ECSs support VPC flow logs.</li><li id="FlowLog_0002__en-us_topic_0151014680_li21719253511">By default, you can create a maximum of 10 VPC flow logs.</li><li id="FlowLog_0002__en-us_topic_0151014680_li1919544520532">By default, a maximum of 400,000 flow log records are supported.</li></ul>
|
||||
<div id="body1547961960823"><p id="FlowLog_0002__p8060118">A VPC flow log records information about the traffic going to and from a VPC. VPC flow logs help you monitor network traffic, analyze network attacks, and determine whether security group and <span id="FlowLog_0002__text11248715171311">firewall</span><span id="FlowLog_0002__text45551720134"></span> rules require modification.</p>
|
||||
<p id="FlowLog_0002__p38692616421">VPC flow logs must be used together with the Log Tank Service (LTS). Before you create a VPC flow log, you need to create a log group and a log topic in LTS. <a href="#FlowLog_0002__fig1535115691415">Figure 1</a> shows the process for configuring VPC flow logs.</p>
|
||||
<div class="fignone" id="FlowLog_0002__fig1535115691415"><a name="FlowLog_0002__fig1535115691415"></a><a name="fig1535115691415"></a><span class="figcap"><b>Figure 1 </b>Configuring VPC flow logs</span><br><span><img class="vsd" id="FlowLog_0002__image9661037927" src="en-us_image_0162336264.png"></span></div>
|
||||
<p id="FlowLog_0002__p1137789316"></p>
|
||||
<div class="section" id="FlowLog_0002__section1095231112517"><h4 class="sectiontitle">Notes and Constraints</h4><ul id="FlowLog_0002__ul18195045135317"><li id="FlowLog_0002__li13405622115110">Currently, only C3, M3, and S2 ECSs support VPC flow logs.</li><li id="FlowLog_0002__li21719253511">By default, you can create a maximum of 10 VPC flow logs.</li><li id="FlowLog_0002__li1919544520532">By default, a maximum of 400,000 flow log records are supported.</li></ul>
|
||||
</div>
|
||||
</div>
|
||||
<div>
|
||||
|
@ -1,12 +1,12 @@
|
||||
<a name="FlowLog_0005"></a><a name="FlowLog_0005"></a>
|
||||
|
||||
<h1 class="topictitle1">Deleting a VPC Flow Log</h1>
|
||||
<div id="body8662426"><div class="section" id="FlowLog_0005__en-us_topic_0151016583_section15598193716333"><h4 class="sectiontitle">Scenarios</h4><p id="FlowLog_0005__en-us_topic_0151016583_p8118659113310">Delete a VPC flow log that is not required. Deleting a VPC flow log will not delete the existing flow log records in LTS.</p>
|
||||
<div class="note" id="FlowLog_0005__en-us_topic_0151016583_note3879192310615"><img src="public_sys-resources/note_3.0-en-us.png"><span class="notetitle"> </span><div class="notebody"><p id="FlowLog_0005__en-us_topic_0151016583_p10879923360">If a NIC that uses a VPC flow log is deleted, the flow log will be automatically deleted. However, the flow log records are not deleted.</p>
|
||||
<div id="body1547961960823"><div class="section" id="FlowLog_0005__section15598193716333"><h4 class="sectiontitle">Scenarios</h4><p id="FlowLog_0005__p8118659113310">Delete a VPC flow log that is not required. Deleting a VPC flow log will not delete the existing flow log records in LTS.</p>
|
||||
<div class="note" id="FlowLog_0005__note3879192310615"><img src="public_sys-resources/note_3.0-en-us.png"><span class="notetitle"> </span><div class="notebody"><p id="FlowLog_0005__p10879923360">If a NIC that uses a VPC flow log is deleted, the flow log will be automatically deleted. However, the flow log records are not deleted.</p>
|
||||
</div></div>
|
||||
</div>
|
||||
<div class="section" id="FlowLog_0005__en-us_topic_0151016583_section7359352124511"><h4 class="sectiontitle">Procedure</h4><ol id="FlowLog_0005__en-us_topic_0151016583_ol1599100493"><li id="FlowLog_0005__en-us_topic_0151016583_li16376160184113">Log in to the management console.</li></ol><ol start="2" id="FlowLog_0005__en-us_topic_0151016583_ol433412616258"><li id="FlowLog_0005__en-us_topic_0151016583_li1261701516256">Click <span><img id="FlowLog_0005__en-us_topic_0151016583_en-us_topic_0118498823_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li></ol><ol start="3" id="FlowLog_0005__en-us_topic_0151016583_ol86651458101716"><li id="FlowLog_0005__en-us_topic_0151016583_l2446029456ed45d08632be6e309b1c82">On the console homepage, under <strong id="FlowLog_0005__en-us_topic_0151016583_b81367139521"><span id="FlowLog_0005__en-us_topic_0151016583_text122834720811">Network</span><span id="FlowLog_0005__en-us_topic_0151016583_text17329492087"></span></strong>, click <strong id="FlowLog_0005__en-us_topic_0151016583_b17137181335220">Virtual Private Cloud</strong>.</li><li id="FlowLog_0005__en-us_topic_0151016583_li15362774171923">In the navigation pane on the left, choose <strong id="FlowLog_0005__en-us_topic_0151016583_b71643149529">VPC Flow Logs</strong>.</li><li id="FlowLog_0005__en-us_topic_0151016583_li7951185711459">Locate the row that contains the VPC flow log to be deleted and click <strong id="FlowLog_0005__en-us_topic_0151016583_b7845125318142">Delete</strong> in the <strong id="FlowLog_0005__en-us_topic_0151016583_b2084695319142">Operation</strong> column.<div class="fignone" id="FlowLog_0005__en-us_topic_0151016583_fig11695911145"><span class="figcap"><b>Figure 1 </b>Deleting a VPC flow log</span><br><span><img id="FlowLog_0005__en-us_topic_0151016583_image3696513415" src="en-us_image_0191594527.png"></span></div>
|
||||
</li><li id="FlowLog_0005__en-us_topic_0151016583_li56651158141710">Click <strong id="FlowLog_0005__en-us_topic_0151016583_b221712241717">Yes</strong> in the displayed dialog box.</li></ol>
|
||||
<div class="section" id="FlowLog_0005__section7359352124511"><h4 class="sectiontitle">Procedure</h4><ol id="FlowLog_0005__ol1599100493"><li id="FlowLog_0005__li16376160184113">Log in to the management console.</li></ol><ol start="2" id="FlowLog_0005__ol433412616258"><li id="FlowLog_0005__li1261701516256">Click <span><img id="FlowLog_0005__en-us_topic_0013748726_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li></ol><ol start="3" id="FlowLog_0005__ol657720261097"><li id="FlowLog_0005__li6860837151412">Click <span><img id="FlowLog_0005__image586015376147" src="en-us_image_0000001503330854.png"></span> in the upper left corner and choose <strong id="FlowLog_0005__b15391356132614"><span id="FlowLog_0005__text3390155616267">Network</span><span id="FlowLog_0005__text4391105692619"></span></strong> > <strong id="FlowLog_0005__b2039185612612">Virtual Private Cloud</strong>.</li></ol><ol start="4" id="FlowLog_0005__ol86651458101716"><li id="FlowLog_0005__li15362774171923">In the navigation pane on the left, choose <strong id="FlowLog_0005__b71643149529">VPC Flow Logs</strong>.</li><li id="FlowLog_0005__li7951185711459">Locate the row that contains the VPC flow log to be deleted and click <strong id="FlowLog_0005__b7845125318142">Delete</strong> in the <strong id="FlowLog_0005__b2084695319142">Operation</strong> column.<div class="fignone" id="FlowLog_0005__fig11695911145"><span class="figcap"><b>Figure 1 </b>Deleting a VPC flow log</span><br><span><img id="FlowLog_0005__image3696513415" src="en-us_image_0191594527.png"></span></div>
|
||||
</li><li id="FlowLog_0005__li56651158141710">Click <strong id="FlowLog_0005__b221712241717">Yes</strong> in the displayed dialog box.</li></ol>
|
||||
</div>
|
||||
</div>
|
||||
<div>
|
||||
|
@ -1,9 +1,9 @@
|
||||
<a name="FlowLog_0006"></a><a name="FlowLog_0006"></a>
|
||||
|
||||
<h1 class="topictitle1">Enabling or Disabling VPC Flow Log</h1>
|
||||
<div id="body8662426"><div class="section" id="FlowLog_0006__en-us_topic_0161677165_section15598193716333"><h4 class="sectiontitle">Scenarios</h4><p id="FlowLog_0006__en-us_topic_0161677165_p8118659113310">After a VPC flow log is created, the VPC flow log is automatically enabled. If you do not need to record traffic data, you can disable the corresponding VPC flow log. The disabled VPC flow log can be enabled again.</p>
|
||||
<div id="body1553326015158"><div class="section" id="FlowLog_0006__section15598193716333"><h4 class="sectiontitle">Scenarios</h4><p id="FlowLog_0006__p8118659113310">After a VPC flow log is created, the VPC flow log is automatically enabled. If you do not need to record traffic data, you can disable the corresponding VPC flow log. The disabled VPC flow log can be enabled again.</p>
|
||||
</div>
|
||||
<div class="section" id="FlowLog_0006__en-us_topic_0161677165_section7359352124511"><h4 class="sectiontitle">Procedure</h4><ol id="FlowLog_0006__en-us_topic_0161677165_ol1599100493"><li id="FlowLog_0006__en-us_topic_0161677165_li16376160184113">Log in to the management console.</li></ol><ol start="2" id="FlowLog_0006__en-us_topic_0161677165_ol433412616258"><li id="FlowLog_0006__en-us_topic_0161677165_li1261701516256">Click <span><img id="FlowLog_0006__en-us_topic_0161677165_en-us_topic_0118498823_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li></ol><ol start="3" id="FlowLog_0006__en-us_topic_0161677165_ol86651458101716"><li id="FlowLog_0006__en-us_topic_0161677165_l2446029456ed45d08632be6e309b1c82">On the console homepage, under <strong id="FlowLog_0006__en-us_topic_0161677165_b370994753517"><span id="FlowLog_0006__en-us_topic_0161677165_text696602718820">Network</span><span id="FlowLog_0006__en-us_topic_0161677165_text104512296816"></span></strong>, click <strong id="FlowLog_0006__en-us_topic_0161677165_b17709194719358">Virtual Private Cloud</strong>.</li><li id="FlowLog_0006__en-us_topic_0161677165_li15362774171923">In the navigation pane on the left, choose <strong id="FlowLog_0006__en-us_topic_0161677165_b14531953153514">VPC Flow Logs</strong>.</li><li id="FlowLog_0006__en-us_topic_0161677165_li7951185711459">Locate the VPC flow log to be enabled or disabled, and click <strong id="FlowLog_0006__en-us_topic_0161677165_b842352706154455">Enable</strong> or <strong id="FlowLog_0006__en-us_topic_0161677165_b842352706154619">Disable</strong> in the <strong id="FlowLog_0006__en-us_topic_0161677165_b84235270615455">Operation</strong> column.</li><li id="FlowLog_0006__en-us_topic_0161677165_li488372733118">Click <strong id="FlowLog_0006__en-us_topic_0161677165_b84235270615469">Yes</strong>.</li></ol>
|
||||
<div class="section" id="FlowLog_0006__section7359352124511"><h4 class="sectiontitle">Procedure</h4><ol id="FlowLog_0006__ol1599100493"><li id="FlowLog_0006__li16376160184113">Log in to the management console.</li></ol><ol start="2" id="FlowLog_0006__ol433412616258"><li id="FlowLog_0006__li1261701516256">Click <span><img id="FlowLog_0006__en-us_topic_0013748726_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li></ol><ol start="3" id="FlowLog_0006__ol657720261097"><li id="FlowLog_0006__li6860837151412">Click <span><img id="FlowLog_0006__image586015376147" src="en-us_image_0000001503011070.png"></span> in the upper left corner and choose <strong id="FlowLog_0006__b148321646202614"><span id="FlowLog_0006__text138311146152610">Network</span><span id="FlowLog_0006__text583194642613"></span></strong> > <strong id="FlowLog_0006__b1832104632618">Virtual Private Cloud</strong>.</li></ol><ol start="4" id="FlowLog_0006__ol86651458101716"><li id="FlowLog_0006__li15362774171923">In the navigation pane on the left, choose <strong id="FlowLog_0006__b14531953153514">VPC Flow Logs</strong>.</li><li id="FlowLog_0006__li11786153123011">Locate the VPC flow log to be enabled or disabled, and choose <strong id="FlowLog_0006__b1417519538118">More</strong> > <strong id="FlowLog_0006__b18341923141120">Enable</strong> or <strong id="FlowLog_0006__b10997182191214">More</strong> > <strong id="FlowLog_0006__b8834623191119">Disable</strong> in the <strong id="FlowLog_0006__b1583417239116">Operation</strong> column.</li><li id="FlowLog_0006__li488372733118">Click <strong id="FlowLog_0006__b84235270615469">Yes</strong>.</li></ol>
|
||||
</div>
|
||||
</div>
|
||||
<div>
|
||||
|
@ -1,43 +1,45 @@
|
||||
<a name="SecurityGroup_0003"></a><a name="SecurityGroup_0003"></a>
|
||||
|
||||
<h1 class="topictitle1">Default Security Groups and Security Group Rules</h1>
|
||||
<div id="body8662426"><p id="SecurityGroup_0003__en-us_topic_0118534003_p9223113110710">Your account automatically comes with a default security group. The default security group allows all outbound traffic, denies all inbound traffic, and allows all traffic between cloud resources in the group. Your cloud resources in this security group can communicate with each other already without adding additional rules.</p>
|
||||
<p id="SecurityGroup_0003__en-us_topic_0118534003_p1480513558383"><a href="#SecurityGroup_0003__en-us_topic_0118534003_fig997718156161">Figure 1</a> shows the default security group rules. The following uses access between ECSs as an example.</p>
|
||||
<div class="fignone" id="SecurityGroup_0003__en-us_topic_0118534003_fig997718156161"><a name="SecurityGroup_0003__en-us_topic_0118534003_fig997718156161"></a><a name="en-us_topic_0118534003_fig997718156161"></a><span class="figcap"><b>Figure 1 </b>Default security group</span><br><span><img class="eddx" id="SecurityGroup_0003__en-us_topic_0118534003_image22171236172514" src="en-us_image_0000001230120807.png"></span></div>
|
||||
<p id="SecurityGroup_0003__en-us_topic_0118534003_p14738751115618"><a href="#SecurityGroup_0003__en-us_topic_0118534003_table493045171919">Table 1</a> describes the default rules for the default security group.</p>
|
||||
<div id="body1529924412907"><div class="p" id="SecurityGroup_0003__p38211617154214">The system creates a default security group for each account. By default, the default security group rules:<ul id="SecurityGroup_0003__ul11516174719521"><li id="SecurityGroup_0003__en-us_topic_0073379079_li1351674713522">Allow all outbound packets: Instances in the default security group can send requests to and receive responses from instances in other security groups.</li><li id="SecurityGroup_0003__en-us_topic_0073379079_li15176291612">Deny all inbound packets: Requests from instances in other security groups will be denied by the default security group.</li></ul>
|
||||
</div>
|
||||
<div class="fignone" id="SecurityGroup_0003__fig997718156161"><span class="figcap"><b>Figure 1 </b>Default security group</span><br><span><img class="eddx" id="SecurityGroup_0003__image22171236172514" src="en-us_image_0000001230120807.png"></span></div>
|
||||
<div class="note" id="SecurityGroup_0003__note154069174516"><img src="public_sys-resources/note_3.0-en-us.png"><span class="notetitle"> </span><div class="notebody"><ul id="SecurityGroup_0003__ul13707733161311"><li id="SecurityGroup_0003__li04874352138">You cannot delete the default security group, but you can modify the rules for the default security group.</li><li id="SecurityGroup_0003__li157071633191312">If two ECSs are in the same security group but in different VPCs, the ECSs cannot communicate with each other. To enable communications between the ECSs, use a VPC peering connection to connect the two VPCs.</li></ul>
|
||||
</div></div>
|
||||
<p id="SecurityGroup_0003__p14738751115618"><a href="#SecurityGroup_0003__table493045171919">Table 1</a> describes the default rules for the default security group.</p>
|
||||
|
||||
<div class="tablenoborder"><a name="SecurityGroup_0003__en-us_topic_0118534003_table493045171919"></a><a name="en-us_topic_0118534003_table493045171919"></a><table cellpadding="4" cellspacing="0" summary="" id="SecurityGroup_0003__en-us_topic_0118534003_table493045171919" frame="border" border="1" rules="all"><caption><b>Table 1 </b>Default security group rules</caption><thead align="left"><tr id="SecurityGroup_0003__en-us_topic_0118534003_row12930145141920"><th align="left" class="cellrowborder" valign="top" width="11.83%" id="mcps1.3.5.2.6.1.1"><p id="SecurityGroup_0003__en-us_topic_0118534003_p3930145118194">Direction</p>
|
||||
<div class="tablenoborder"><a name="SecurityGroup_0003__table493045171919"></a><a name="table493045171919"></a><table cellpadding="4" cellspacing="0" summary="" id="SecurityGroup_0003__table493045171919" frame="border" border="1" rules="all"><caption><b>Table 1 </b>Default security group rules</caption><thead align="left"><tr id="SecurityGroup_0003__row12930145141920"><th align="left" class="cellrowborder" valign="top" width="11.83%" id="mcps1.3.5.2.6.1.1"><p id="SecurityGroup_0003__p3930145118194">Direction</p>
|
||||
</th>
|
||||
<th align="left" class="cellrowborder" valign="top" width="11.97%" id="mcps1.3.5.2.6.1.2"><p id="SecurityGroup_0003__en-us_topic_0118534003_p129301851131913">Protocol</p>
|
||||
<th align="left" class="cellrowborder" valign="top" width="11.97%" id="mcps1.3.5.2.6.1.2"><p id="SecurityGroup_0003__p129301851131913">Protocol</p>
|
||||
</th>
|
||||
<th align="left" class="cellrowborder" valign="top" width="15%" id="mcps1.3.5.2.6.1.3"><p id="SecurityGroup_0003__en-us_topic_0118534003_p093075141919">Port/Range</p>
|
||||
<th align="left" class="cellrowborder" valign="top" width="15%" id="mcps1.3.5.2.6.1.3"><p id="SecurityGroup_0003__p093075141919">Port/Range</p>
|
||||
</th>
|
||||
<th align="left" class="cellrowborder" valign="top" width="25.22%" id="mcps1.3.5.2.6.1.4"><p id="SecurityGroup_0003__en-us_topic_0118534003_p149306511191">Source/Destination</p>
|
||||
<th align="left" class="cellrowborder" valign="top" width="25.22%" id="mcps1.3.5.2.6.1.4"><p id="SecurityGroup_0003__p149306511191">Source/Destination</p>
|
||||
</th>
|
||||
<th align="left" class="cellrowborder" valign="top" width="35.980000000000004%" id="mcps1.3.5.2.6.1.5"><p id="SecurityGroup_0003__en-us_topic_0118534003_p99301851161916">Description</p>
|
||||
<th align="left" class="cellrowborder" valign="top" width="35.980000000000004%" id="mcps1.3.5.2.6.1.5"><p id="SecurityGroup_0003__p99301851161916">Description</p>
|
||||
</th>
|
||||
</tr>
|
||||
</thead>
|
||||
<tbody><tr id="SecurityGroup_0003__en-us_topic_0118534003_row17931125111193"><td class="cellrowborder" valign="top" width="11.83%" headers="mcps1.3.5.2.6.1.1 "><p id="SecurityGroup_0003__en-us_topic_0118534003_p1593111518191">Outbound</p>
|
||||
<tbody><tr id="SecurityGroup_0003__row17931125111193"><td class="cellrowborder" valign="top" width="11.83%" headers="mcps1.3.5.2.6.1.1 "><p id="SecurityGroup_0003__p1593111518191">Outbound</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="11.97%" headers="mcps1.3.5.2.6.1.2 "><p id="SecurityGroup_0003__en-us_topic_0118534003_p19931105117191">All</p>
|
||||
<td class="cellrowborder" valign="top" width="11.97%" headers="mcps1.3.5.2.6.1.2 "><p id="SecurityGroup_0003__p19931105117191">All</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="15%" headers="mcps1.3.5.2.6.1.3 "><p id="SecurityGroup_0003__en-us_topic_0118534003_p15931651181920">All</p>
|
||||
<td class="cellrowborder" valign="top" width="15%" headers="mcps1.3.5.2.6.1.3 "><p id="SecurityGroup_0003__p15931651181920">All</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="25.22%" headers="mcps1.3.5.2.6.1.4 "><p id="SecurityGroup_0003__en-us_topic_0118534003_p179318515196">Destination: 0.0.0.0/0</p>
|
||||
<td class="cellrowborder" valign="top" width="25.22%" headers="mcps1.3.5.2.6.1.4 "><p id="SecurityGroup_0003__p179318515196">Destination: 0.0.0.0/0</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="35.980000000000004%" headers="mcps1.3.5.2.6.1.5 "><p id="SecurityGroup_0003__en-us_topic_0118534003_p49315518196">Allows all outbound traffic.</p>
|
||||
<td class="cellrowborder" valign="top" width="35.980000000000004%" headers="mcps1.3.5.2.6.1.5 "><p id="SecurityGroup_0003__p49315518196">Allows all outbound traffic.</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="SecurityGroup_0003__en-us_topic_0118534003_row109311451131911"><td class="cellrowborder" valign="top" width="11.83%" headers="mcps1.3.5.2.6.1.1 "><p id="SecurityGroup_0003__en-us_topic_0118534003_p1293111513193">Inbound</p>
|
||||
<tr id="SecurityGroup_0003__row109311451131911"><td class="cellrowborder" valign="top" width="11.83%" headers="mcps1.3.5.2.6.1.1 "><p id="SecurityGroup_0003__p1293111513193">Inbound</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="11.97%" headers="mcps1.3.5.2.6.1.2 "><p id="SecurityGroup_0003__en-us_topic_0118534003_p1493105115194">All</p>
|
||||
<td class="cellrowborder" valign="top" width="11.97%" headers="mcps1.3.5.2.6.1.2 "><p id="SecurityGroup_0003__p1493105115194">All</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="15%" headers="mcps1.3.5.2.6.1.3 "><p id="SecurityGroup_0003__en-us_topic_0118534003_p1593155181920">All</p>
|
||||
<td class="cellrowborder" valign="top" width="15%" headers="mcps1.3.5.2.6.1.3 "><p id="SecurityGroup_0003__p1593155181920">All</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="25.22%" headers="mcps1.3.5.2.6.1.4 "><p id="SecurityGroup_0003__en-us_topic_0118534003_p593115141917">Source: the current security group (for example, sg-<em id="SecurityGroup_0003__en-us_topic_0118534003_i2138146127154428">xxxxx</em>)</p>
|
||||
<td class="cellrowborder" valign="top" width="25.22%" headers="mcps1.3.5.2.6.1.4 "><p id="SecurityGroup_0003__p593115141917">Source: the current security group (for example, sg-<em id="SecurityGroup_0003__i2138146127154428">xxxxx</em>)</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="35.980000000000004%" headers="mcps1.3.5.2.6.1.5 "><p id="SecurityGroup_0003__en-us_topic_0118534003_p2931151121912">Allows communications among ECSs within the security group and denies all inbound traffic (incoming data packets).</p>
|
||||
<td class="cellrowborder" valign="top" width="35.980000000000004%" headers="mcps1.3.5.2.6.1.5 "><p id="SecurityGroup_0003__p2931151121912">Allows communications among ECSs within the security group and denies all inbound traffic (incoming data packets).</p>
|
||||
</td>
|
||||
</tr>
|
||||
</tbody>
|
||||
|
@ -1,14 +1,84 @@
|
||||
<a name="SecurityGroup_0004"></a><a name="SecurityGroup_0004"></a>
|
||||
|
||||
<h1 class="topictitle1">Fast-Adding Security Group Rules</h1>
|
||||
<div id="body8662426"><div class="section" id="SecurityGroup_0004__en-us_topic_0118534006_section75471104513"><h4 class="sectiontitle">Scenarios</h4><p id="SecurityGroup_0004__en-us_topic_0118534006_p1325418320455">You can add multiple security group rules with different protocols and ports at the same time.</p>
|
||||
<div id="body1529924415554"><div class="section" id="SecurityGroup_0004__section75471104513"><h4 class="sectiontitle">Scenarios</h4><p id="SecurityGroup_0004__p1325418320455">You can add multiple security group rules with different protocols and ports at the same time.</p>
|
||||
</div>
|
||||
<div class="section" id="SecurityGroup_0004__en-us_topic_0118534006_section5619104211210"><h4 class="sectiontitle">Procedure</h4><ol id="SecurityGroup_0004__en-us_topic_0118534006_ol1599100493"><li id="SecurityGroup_0004__en-us_topic_0118534006_li1831041311306">Log in to the management console.</li></ol><ol start="2" id="SecurityGroup_0004__en-us_topic_0118534006_ol1527262085715"><li id="SecurityGroup_0004__en-us_topic_0118534006_li11279102515716">Click <span><img id="SecurityGroup_0004__en-us_topic_0118534006_en-us_topic_0118498823_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="SecurityGroup_0004__en-us_topic_0118534006_li1728112545719">On the console homepage, under <strong id="SecurityGroup_0004__en-us_topic_0118534006_b1150973555719"><span id="SecurityGroup_0004__en-us_topic_0118534006_text1184564753614">Network</span><span id="SecurityGroup_0004__en-us_topic_0118534006_text52831849123616"></span></strong>, click <strong id="SecurityGroup_0004__en-us_topic_0118534006_b25096351577">Virtual Private Cloud</strong>.</li><li id="SecurityGroup_0004__en-us_topic_0118534006_li15281162517570">In the navigation pane on the left, choose <strong id="SecurityGroup_0004__en-us_topic_0118534006_b986764371515">Access Control</strong> > <strong id="SecurityGroup_0004__en-us_topic_0118534006_b887192471514">Security Groups</strong>.</li><li id="SecurityGroup_0004__en-us_topic_0118534006_li286122917579">On the <strong id="SecurityGroup_0004__en-us_topic_0118534006_b842352706154919">Security Groups</strong> page, locate the target security group and click <strong id="SecurityGroup_0004__en-us_topic_0118534006_b842352706155435">Manage Rule</strong> in the <strong id="SecurityGroup_0004__en-us_topic_0118534006_b842352706155450">Operation</strong> column to switch to the page for managing inbound and outbound rules.</li><li id="SecurityGroup_0004__en-us_topic_0118534006_li1063572655813">On the <strong id="SecurityGroup_0004__en-us_topic_0118534006_b6612131412363">Inbound Rules</strong> tab, click <strong id="SecurityGroup_0004__en-us_topic_0118534006_b84235270615825">Fast-Add Rule</strong>. In the displayed dialog box, select the protocols and ports you wish to add all at once.<div class="fignone" id="SecurityGroup_0004__en-us_topic_0118534006_fig1127533152411"><span class="figcap"><b>Figure 1 </b>Fast-Add Inbound Rule</span><br><span><img id="SecurityGroup_0004__en-us_topic_0118534006_image427617310248" src="en-us_image_0211552164.png"></span></div>
|
||||
<p id="SecurityGroup_0004__en-us_topic_0118534006_p179862281635"></p>
|
||||
</li><li id="SecurityGroup_0004__en-us_topic_0118534006_li5604143282711">On the <strong id="SecurityGroup_0004__en-us_topic_0118534006_b121728429363">Outbound Rules</strong> tab, click <strong id="SecurityGroup_0004__en-us_topic_0118534006_b842352706171918">Fast-Add Rule</strong>. In the displayed dialog box, select required protocols and ports to add multiple rules at a time.<p id="SecurityGroup_0004__en-us_topic_0118534006_p127887158136"></p>
|
||||
<div class="fignone" id="SecurityGroup_0004__en-us_topic_0118534006_fig164897019299"><span class="figcap"><b>Figure 2 </b>Fast-Add Outbound Rule</span><br><span><img id="SecurityGroup_0004__en-us_topic_0118534006_image1548970142912" src="en-us_image_0211560998.png"></span></div>
|
||||
<p id="SecurityGroup_0004__en-us_topic_0118534006_p7646197161514"></p>
|
||||
</li><li id="SecurityGroup_0004__en-us_topic_0118534006_li1736214532153">Click <strong>OK</strong>.</li></ol>
|
||||
<div class="section" id="SecurityGroup_0004__section5619104211210"><h4 class="sectiontitle">Procedure</h4><ol id="SecurityGroup_0004__ol193620537316"><li id="SecurityGroup_0004__li2849879021595">Log in to the management console.</li></ol><ol start="2" id="SecurityGroup_0004__ol1527262085715"><li id="SecurityGroup_0004__li11279102515716">Click <span><img id="SecurityGroup_0004__en-us_topic_0013748726_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="SecurityGroup_0004__li958016211335">Click <span><img id="SecurityGroup_0004__vpc_vpc_0004_image586015376147" src="en-us_image_0000001500905066.png"></span> in the upper left corner and choose <strong id="SecurityGroup_0004__vpc_vpc_0004_b1656981942010"><span id="SecurityGroup_0004__vpc_vpc_0004_text2861113718142">Network</span><span id="SecurityGroup_0004__vpc_vpc_0004_text3861203713146"></span></strong> > <strong id="SecurityGroup_0004__vpc_vpc_0004_b65691219172012">Virtual Private Cloud</strong>.</li><li id="SecurityGroup_0004__li15281162517570">In the navigation pane on the left, choose <strong id="SecurityGroup_0004__b668412371385">Access Control</strong> > <strong id="SecurityGroup_0004__b887192471514">Security Groups</strong>.</li><li id="SecurityGroup_0004__li286122917579">On the <strong id="SecurityGroup_0004__b842352706154919">Security Groups</strong> page, locate the target security group and click <strong id="SecurityGroup_0004__b842352706155435">Manage Rule</strong> in the <strong id="SecurityGroup_0004__b842352706155450">Operation</strong> column to switch to the page for managing inbound and outbound rules.</li><li id="SecurityGroup_0004__li1063572655813">On the <strong id="SecurityGroup_0004__b6612131412363">Inbound Rules</strong> tab, click <strong id="SecurityGroup_0004__b84235270615825">Fast-Add Rule</strong>. In the displayed dialog box, select the protocols and ports you wish to add all at once.<div class="fignone" id="SecurityGroup_0004__fig1127533152411"><span class="figcap"><b>Figure 1 </b>Fast-Add Inbound Rule</span><br><span><img id="SecurityGroup_0004__image427617310248" src="en-us_image_0211552164.png"></span></div>
|
||||
|
||||
<div class="tablenoborder"><table cellpadding="4" cellspacing="0" summary="" id="SecurityGroup_0004__table111445216564" width="90%" frame="border" border="1" rules="all"><caption><b>Table 1 </b>Inbound rule parameter description</caption><thead align="left"><tr id="SecurityGroup_0004__row1811565205613"><th align="left" class="cellrowborder" valign="top" width="12.7%" id="mcps1.3.2.3.5.4.2.4.1.1"><p id="SecurityGroup_0004__p51151452125620">Parameter</p>
|
||||
</th>
|
||||
<th align="left" class="cellrowborder" valign="top" width="69.3%" id="mcps1.3.2.3.5.4.2.4.1.2"><p id="SecurityGroup_0004__p5115552175613">Description</p>
|
||||
</th>
|
||||
<th align="left" class="cellrowborder" valign="top" width="18%" id="mcps1.3.2.3.5.4.2.4.1.3"><p id="SecurityGroup_0004__p711565219563">Example Value</p>
|
||||
</th>
|
||||
</tr>
|
||||
</thead>
|
||||
<tbody><tr id="SecurityGroup_0004__row1752312142513"><td class="cellrowborder" valign="top" width="12.7%" headers="mcps1.3.2.3.5.4.2.4.1.1 "><p id="SecurityGroup_0004__p19524121411512">Protocols and Ports</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="69.3%" headers="mcps1.3.2.3.5.4.2.4.1.2 "><p id="SecurityGroup_0004__p85249141455">Common protocols and ports are provided for:</p>
|
||||
<ul id="SecurityGroup_0004__ul7923410716"><li id="SecurityGroup_0004__li11921447719">Remote login and ping</li><li id="SecurityGroup_0004__li1931241170">Web services</li><li id="SecurityGroup_0004__li4931244711">Databases</li></ul>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="18%" headers="mcps1.3.2.3.5.4.2.4.1.3 "><p id="SecurityGroup_0004__p105245148517">SSH (22)</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="SecurityGroup_0004__row511615528561"><td class="cellrowborder" valign="top" width="12.7%" headers="mcps1.3.2.3.5.4.2.4.1.1 "><p id="SecurityGroup_0004__p86899991813">Source</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="69.3%" headers="mcps1.3.2.3.5.4.2.4.1.2 "><div class="p" id="SecurityGroup_0004__p18116175212564">Source of the security group rule. The value can be an IP address or a security group to allow access from IP addresses or instances in the security group. For example:<ul id="SecurityGroup_0004__ul12116352195619"><li id="SecurityGroup_0004__li18391357452">xxx.xxx.xxx.xxx/32 (IPv4 address)</li><li id="SecurityGroup_0004__li6529544124510">xxx.xxx.xxx.0/24 (IPv4 address range)</li><li id="SecurityGroup_0004__li06004484454">0.0.0.0/0 (all IPv4 addresses)</li><li id="SecurityGroup_0004__li1611612527567">sg-abc (security group)</li></ul>
|
||||
</div>
|
||||
<p id="SecurityGroup_0004__p1252129194014">If the source is a security group, this rule will apply to all instances associated with the selected security group.</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="18%" headers="mcps1.3.2.3.5.4.2.4.1.3 "><p id="SecurityGroup_0004__p611613524569">0.0.0.0/0</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="SecurityGroup_0004__row111615525565"><td class="cellrowborder" valign="top" width="12.7%" headers="mcps1.3.2.3.5.4.2.4.1.1 "><p id="SecurityGroup_0004__p1711655217565">Description</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="69.3%" headers="mcps1.3.2.3.5.4.2.4.1.2 "><p id="SecurityGroup_0004__p1211611525564">(Optional) Supplementary information about the security group rule.</p>
|
||||
<p id="SecurityGroup_0004__p6116175225613">The description can contain a maximum of 255 characters and cannot contain angle brackets (< or >).</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="18%" headers="mcps1.3.2.3.5.4.2.4.1.3 "><p id="SecurityGroup_0004__p3116115216568">-</p>
|
||||
</td>
|
||||
</tr>
|
||||
</tbody>
|
||||
</table>
|
||||
</div>
|
||||
</li><li id="SecurityGroup_0004__li5604143282711">On the <strong id="SecurityGroup_0004__b121728429363">Outbound Rules</strong> tab, click <strong id="SecurityGroup_0004__b842352706171918">Fast-Add Rule</strong>. In the displayed dialog box, select required protocols and ports to add multiple rules at a time.<div class="fignone" id="SecurityGroup_0004__fig164897019299"><span class="figcap"><b>Figure 2 </b>Fast-Add Outbound Rule</span><br><span><img id="SecurityGroup_0004__image1548970142912" src="en-us_image_0211560998.png"></span></div>
|
||||
|
||||
<div class="tablenoborder"><table cellpadding="4" cellspacing="0" summary="" id="SecurityGroup_0004__table0614192319232" width="90%" frame="border" border="1" rules="all"><caption><b>Table 2 </b>Outbound rule parameter description</caption><thead align="left"><tr id="SecurityGroup_0004__row19614623202312"><th align="left" class="cellrowborder" valign="top" width="12.34%" id="mcps1.3.2.3.6.4.2.4.1.1"><p id="SecurityGroup_0004__p361592319230">Parameter</p>
|
||||
</th>
|
||||
<th align="left" class="cellrowborder" valign="top" width="69.66%" id="mcps1.3.2.3.6.4.2.4.1.2"><p id="SecurityGroup_0004__p1961514231232">Description</p>
|
||||
</th>
|
||||
<th align="left" class="cellrowborder" valign="top" width="18%" id="mcps1.3.2.3.6.4.2.4.1.3"><p id="SecurityGroup_0004__p1061552372311">Example Value</p>
|
||||
</th>
|
||||
</tr>
|
||||
</thead>
|
||||
<tbody><tr id="SecurityGroup_0004__row14676163319151"><td class="cellrowborder" valign="top" width="12.34%" headers="mcps1.3.2.3.6.4.2.4.1.1 "><p id="SecurityGroup_0004__p28238482155">Protocols and Ports</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="69.66%" headers="mcps1.3.2.3.6.4.2.4.1.2 "><p id="SecurityGroup_0004__p282334881515">Common protocols and ports are provided for:</p>
|
||||
<ul id="SecurityGroup_0004__ul188239489152"><li id="SecurityGroup_0004__li1482384818154">Remote login and ping</li><li id="SecurityGroup_0004__li582394816156">Web services</li><li id="SecurityGroup_0004__li1782364810159">Databases</li></ul>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="18%" headers="mcps1.3.2.3.6.4.2.4.1.3 "><p id="SecurityGroup_0004__p282312485151">SSH (22)</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="SecurityGroup_0004__row2617112315232"><td class="cellrowborder" valign="top" width="12.34%" headers="mcps1.3.2.3.6.4.2.4.1.1 "><p id="SecurityGroup_0004__p15617623172315">Destination</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="69.66%" headers="mcps1.3.2.3.6.4.2.4.1.2 "><div class="p" id="SecurityGroup_0004__p196171823152315">Destination of the security group rule. The value can be an IP address or a security group to allow access to IP addresses or instances in the security group. For example:<ul id="SecurityGroup_0004__ul16177237233"><li id="SecurityGroup_0004__li8617323202310">xxx.xxx.xxx.xxx/32 (IPv4 address)</li><li id="SecurityGroup_0004__li10617152312231">xxx.xxx.xxx.0/24 (IPv4 address range)</li><li id="SecurityGroup_0004__li206171823182318">0.0.0.0/0 (all IPv4 addresses)</li><li id="SecurityGroup_0004__li6930529354">sg-abc (security group)</li></ul>
|
||||
</div>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="18%" headers="mcps1.3.2.3.6.4.2.4.1.3 "><p id="SecurityGroup_0004__p4617102352310">0.0.0.0/0</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="SecurityGroup_0004__row196181723162317"><td class="cellrowborder" valign="top" width="12.34%" headers="mcps1.3.2.3.6.4.2.4.1.1 "><p id="SecurityGroup_0004__p2061811237237">Description</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="69.66%" headers="mcps1.3.2.3.6.4.2.4.1.2 "><p id="SecurityGroup_0004__p0618182392312">(Optional) Supplementary information about the security group rule.</p>
|
||||
<p id="SecurityGroup_0004__p16618823192317">The description can contain a maximum of 255 characters and cannot contain angle brackets (< or >).</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="18%" headers="mcps1.3.2.3.6.4.2.4.1.3 "><p id="SecurityGroup_0004__p20618623202311">-</p>
|
||||
</td>
|
||||
</tr>
|
||||
</tbody>
|
||||
</table>
|
||||
</div>
|
||||
</li><li id="SecurityGroup_0004__li1736214532153">Click <strong id="SecurityGroup_0004__b1910313625311">OK</strong>.</li></ol>
|
||||
</div>
|
||||
</div>
|
||||
<div>
|
||||
|
@ -1,15 +1,15 @@
|
||||
<a name="SecurityGroup_0006"></a><a name="SecurityGroup_0006"></a>
|
||||
|
||||
<h1 class="topictitle1">Changing the Security Group of an ECS</h1>
|
||||
<div id="body8662426"><div class="section" id="SecurityGroup_0006__en-us_topic_0118534010_section181956227265"><h4 class="sectiontitle">Scenarios</h4><p id="SecurityGroup_0006__en-us_topic_0118534010_p95671820182813">Change the security group associated with an ECS NIC.</p>
|
||||
<div id="body1529924417030"><div class="section" id="SecurityGroup_0006__section181956227265"><h4 class="sectiontitle">Scenarios</h4><p id="SecurityGroup_0006__p95671820182813">Change the security group associated with an ECS NIC.</p>
|
||||
</div>
|
||||
<div class="section" id="SecurityGroup_0006__en-us_topic_0118534010_section451235718918"><h4 class="sectiontitle">Procedure</h4><ol id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_ol146871568377"><li id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_li3490190117228">Log in to the management console.</li><li id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_li1168746173718">Click <span><img id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_image1791178433153215" src="en-us_image_0093507575.png"></span> in the upper left corner and select your region and project.</li><li id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_li206871564372">Under <strong id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_b19411937174214"><span id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_text8411637184214">Computing</span></strong>, click <strong id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_b24121037184218">Elastic Cloud Server</strong>.</li><li id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_li6688267371">In the ECS list, locate the row that contains the target ECS. Click <strong id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_b3965144994119">More</strong> in the <strong id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_b179661449174112">Operation</strong> column and select <strong id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_b14966174913419">Manage Network</strong> > <strong id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_b19967749134120">Change Security Group</strong>.<p id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_p968836143718">The <strong id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_b842352706162949">Change Security Group</strong> dialog box is displayed.</p>
|
||||
<div class="fignone" id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_fig1673733486"><span class="figcap"><b>Figure 1 </b>Change Security Group</span><br><span><img id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_image14705135143714" src="en-us_image_0122999741.png"></span></div>
|
||||
</li><li id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_li14114175682518">Select the target NIC and security groups as prompted.<p id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_p1615510191262"><a name="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_li14114175682518"></a><a name="en-us_topic_0118534010_en-us_topic_0093492517_li14114175682518"></a>You can select multiple security groups. In such a case, the rules of all the selected security groups will be aggregated to apply on the <span id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_text10680201271119">ECS</span>.</p>
|
||||
<p id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_p1669712426182">To create a security group, click <strong id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_b1291994117114">Create Security Group</strong>.</p>
|
||||
<div class="note" id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_note4690867375"><img src="public_sys-resources/note_3.0-en-us.png"><span class="notetitle"> </span><div class="notebody"><p id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_p3691176143719">Using multiple security groups may deteriorate <span id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_text127881839154216">ECS</span> network performance. You are suggested to select no more than five security groups.</p>
|
||||
<div class="section" id="SecurityGroup_0006__section451235718918"><h4 class="sectiontitle">Procedure</h4><ol id="SecurityGroup_0006__en-us_topic_0093492517_ol146871568377"><li id="SecurityGroup_0006__en-us_topic_0093492517_li3490190117228">Log in to the management console.</li><li id="SecurityGroup_0006__en-us_topic_0093492517_li1168746173718">Click <span><img id="SecurityGroup_0006__en-us_topic_0093492517_image1791178433153215" src="en-us_image_0093507575.png"></span> in the upper left corner and select your region and project.</li><li id="SecurityGroup_0006__en-us_topic_0093492517_li206871564372">Under <strong id="SecurityGroup_0006__en-us_topic_0093492517_b1338816073816"><span id="SecurityGroup_0006__en-us_topic_0093492517_text13387501380">Computing</span></strong>, click <strong id="SecurityGroup_0006__en-us_topic_0093492517_b938818033811">Elastic Cloud Server</strong>.</li><li id="SecurityGroup_0006__en-us_topic_0093492517_li6688267371">In the ECS list, locate the row that contains the target ECS. Click <strong id="SecurityGroup_0006__en-us_topic_0093492517_b3965144994119">More</strong> in the <strong id="SecurityGroup_0006__en-us_topic_0093492517_b179661449174112">Operation</strong> column and select <strong id="SecurityGroup_0006__en-us_topic_0093492517_b14966174913419">Manage Network</strong> > <strong id="SecurityGroup_0006__en-us_topic_0093492517_b19967749134120">Change Security Group</strong>.<p id="SecurityGroup_0006__en-us_topic_0093492517_p968836143718">The <strong id="SecurityGroup_0006__en-us_topic_0093492517_b842352706162949">Change Security Group</strong> dialog box is displayed.</p>
|
||||
<div class="fignone" id="SecurityGroup_0006__en-us_topic_0093492517_fig1673733486"><span class="figcap"><b>Figure 1 </b>Change Security Group</span><br><span><img id="SecurityGroup_0006__en-us_topic_0093492517_image14705135143714" src="en-us_image_0122999741.png"></span></div>
|
||||
</li><li id="SecurityGroup_0006__en-us_topic_0093492517_li14114175682518">Select the target NIC and security groups as prompted.<p id="SecurityGroup_0006__en-us_topic_0093492517_p1615510191262"><a name="SecurityGroup_0006__en-us_topic_0093492517_li14114175682518"></a><a name="en-us_topic_0093492517_li14114175682518"></a>You can select multiple security groups. In such a case, the rules of all the selected security groups will be aggregated to apply on the <span id="SecurityGroup_0006__en-us_topic_0093492517_text10680201271119">ECS</span>.</p>
|
||||
<p id="SecurityGroup_0006__en-us_topic_0093492517_p1669712426182">To create a security group, click <strong id="SecurityGroup_0006__en-us_topic_0093492517_b1291994117114">Create Security Group</strong>.</p>
|
||||
<div class="note" id="SecurityGroup_0006__en-us_topic_0093492517_note4690867375"><img src="public_sys-resources/note_3.0-en-us.png"><span class="notetitle"> </span><div class="notebody"><p id="SecurityGroup_0006__en-us_topic_0093492517_p3691176143719">Using multiple security groups may deteriorate <span id="SecurityGroup_0006__en-us_topic_0093492517_text127881839154216">ECS</span> network performance. You are suggested to select no more than five security groups.</p>
|
||||
</div></div>
|
||||
</li><li id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_li1969136193711">Click <strong id="SecurityGroup_0006__en-us_topic_0118534010_en-us_topic_0093492517_b842352706165945">OK</strong>.</li></ol>
|
||||
</li><li id="SecurityGroup_0006__en-us_topic_0093492517_li1969136193711">Click <strong id="SecurityGroup_0006__en-us_topic_0093492517_b842352706165945">OK</strong>.</li></ol>
|
||||
</div>
|
||||
</div>
|
||||
<div>
|
||||
|
@ -1,15 +1,16 @@
|
||||
<a name="SecurityGroup_0017"></a><a name="SecurityGroup_0017"></a>
|
||||
|
||||
<h1 class="topictitle1">Adding Instances to and Removing Them from a Security Group</h1>
|
||||
<div id="body8662426"><div class="section" id="SecurityGroup_0017__en-us_topic_0123332992_section1284185020245"><h4 class="sectiontitle">Scenarios</h4><p id="SecurityGroup_0017__en-us_topic_0123332992_p20866105342413">After a security group is created, you can add instances to the security group to protect the instances. You can also remove them from the security group as required.</p>
|
||||
<p id="SecurityGroup_0017__en-us_topic_0123332992_p37853499286">You can add multiple instances to or remove them from a security group.</p>
|
||||
<div id="body1532510613760"><div class="section" id="SecurityGroup_0017__section1284185020245"><h4 class="sectiontitle">Scenarios</h4><p id="SecurityGroup_0017__p20866105342413">After a security group is created, you can add instances to the security group to protect the instances. You can also remove them from the security group as required.</p>
|
||||
<p id="SecurityGroup_0017__p37853499286">You can add multiple instances to or remove them from a security group.</p>
|
||||
</div>
|
||||
<div class="section" id="SecurityGroup_0017__en-us_topic_0123332992_section7737145418298"><h4 class="sectiontitle">Adding Instances to a Security Group</h4><ol id="SecurityGroup_0017__en-us_topic_0123332992_ol1599100493"><li id="SecurityGroup_0017__en-us_topic_0123332992_li9797130193219">Log in to the management console.</li></ol><ol start="2" id="SecurityGroup_0017__en-us_topic_0123332992_ol1527262085715"><li id="SecurityGroup_0017__en-us_topic_0123332992_li19707181319510">Click <span><img id="SecurityGroup_0017__en-us_topic_0123332992_en-us_topic_0118498823_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="SecurityGroup_0017__en-us_topic_0123332992_li1728112545719">On the console homepage, under <strong id="SecurityGroup_0017__en-us_topic_0123332992_b11677185671411"><span id="SecurityGroup_0017__en-us_topic_0123332992_text10636153613811">Network</span><span id="SecurityGroup_0017__en-us_topic_0123332992_text12142238103816"></span></strong>, click <strong id="SecurityGroup_0017__en-us_topic_0123332992_b8677155613143">Virtual Private Cloud</strong>.</li><li id="SecurityGroup_0017__en-us_topic_0123332992_li15281162517570">In the navigation pane on the left, choose <strong id="SecurityGroup_0017__en-us_topic_0123332992_b26200341168">Access Control</strong> > <strong id="SecurityGroup_0017__en-us_topic_0123332992_b762519341261">Security Groups</strong>.</li><li id="SecurityGroup_0017__en-us_topic_0123332992_li286122917579">On the <strong id="SecurityGroup_0017__en-us_topic_0123332992_b2091855912138">Security Groups</strong> page, click <strong id="SecurityGroup_0017__en-us_topic_0123332992_b5808928607">Manage Instance</strong> in the <strong id="SecurityGroup_0017__en-us_topic_0123332992_b49191759181319">Operation</strong> column.</li><li id="SecurityGroup_0017__en-us_topic_0123332992_li7677145464713">On the <strong id="SecurityGroup_0017__en-us_topic_0123332992_b842352706144348">Servers</strong> tab, click <strong id="SecurityGroup_0017__en-us_topic_0123332992_b842352706144415">Add</strong> and add one or more servers to the current security group.</li><li id="SecurityGroup_0017__en-us_topic_0123332992_li20454133912504">On the <strong id="SecurityGroup_0017__en-us_topic_0123332992_b842352706144522">Extension NICs</strong> tab, click <strong id="SecurityGroup_0017__en-us_topic_0123332992_b842352706144533">Add</strong> and add one or more extension NICs to the current security group.</li><li id="SecurityGroup_0017__en-us_topic_0123332992_li2089912335185">Click <strong>OK</strong>.</li></ol>
|
||||
<div class="section" id="SecurityGroup_0017__section7737145418298"><h4 class="sectiontitle">Adding Instances to a Security Group</h4><ol id="SecurityGroup_0017__ol1527262085715"><li id="SecurityGroup_0017__li2849879021595">Log in to the management console.</li><li id="SecurityGroup_0017__li19707181319510">Click <span><img id="SecurityGroup_0017__en-us_topic_0013748726_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="SecurityGroup_0017__li958016211335">Click <span><img id="SecurityGroup_0017__vpc_vpc_0004_image586015376147" src="en-us_image_0000001500905066.png"></span> in the upper left corner and choose <strong id="SecurityGroup_0017__vpc_vpc_0004_b1656981942010"><span id="SecurityGroup_0017__vpc_vpc_0004_text2861113718142">Network</span><span id="SecurityGroup_0017__vpc_vpc_0004_text3861203713146"></span></strong> > <strong id="SecurityGroup_0017__vpc_vpc_0004_b65691219172012">Virtual Private Cloud</strong>.</li><li id="SecurityGroup_0017__li15281162517570">In the navigation pane on the left, choose <strong id="SecurityGroup_0017__b26200341168">Access Control</strong> > <strong id="SecurityGroup_0017__b762519341261">Security Groups</strong>.</li><li id="SecurityGroup_0017__li286122917579">On the <strong id="SecurityGroup_0017__b114081941131210">Security Groups</strong> page, click <strong id="SecurityGroup_0017__b97031427151318">Manage Instance</strong> in the <strong id="SecurityGroup_0017__b818562410133">Operation</strong> column.</li><li id="SecurityGroup_0017__li7677145464713">On the <strong id="SecurityGroup_0017__b842352706144348">Servers</strong> tab, click <strong id="SecurityGroup_0017__b842352706144415">Add</strong> and add one or more servers to the current security group.</li><li id="SecurityGroup_0017__li20454133912504">On the <strong id="SecurityGroup_0017__b842352706144522">Extension NICs</strong> tab, click <strong id="SecurityGroup_0017__b842352706144533">Add</strong> and add one or more extension NICs to the current security group.</li><li id="SecurityGroup_0017__li2089912335185">Click <strong id="SecurityGroup_0017__b22849223551">OK</strong>.</li></ol>
|
||||
</div>
|
||||
<div class="section" id="SecurityGroup_0017__en-us_topic_0123332992_section147074331319"><h4 class="sectiontitle">Removing Instances from a Security Group</h4><ol id="SecurityGroup_0017__en-us_topic_0123332992_ol1897954334412"><li id="SecurityGroup_0017__en-us_topic_0123332992_li11489122614011">Log in to the management console.</li></ol><ol start="2" id="SecurityGroup_0017__en-us_topic_0123332992_ol2708193318119"><li id="SecurityGroup_0017__en-us_topic_0123332992_li1770913314115">Click <span><img id="SecurityGroup_0017__en-us_topic_0123332992_en-us_topic_0118498823_image338921514480_1" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="SecurityGroup_0017__en-us_topic_0123332992_li1770916339118">On the console homepage, under <strong id="SecurityGroup_0017__en-us_topic_0123332992_b17553356105413"><span id="SecurityGroup_0017__en-us_topic_0123332992_text5152252123814">Network</span><span id="SecurityGroup_0017__en-us_topic_0123332992_text9835145311389"></span></strong>, click <strong id="SecurityGroup_0017__en-us_topic_0123332992_b1553165619540">Virtual Private Cloud</strong>.</li><li id="SecurityGroup_0017__en-us_topic_0123332992_li13710163311119">In the navigation pane on the left, choose <strong id="SecurityGroup_0017__en-us_topic_0123332992_b31988488616">Access Control</strong> > <strong id="SecurityGroup_0017__en-us_topic_0123332992_b320454816619">Security Groups</strong>.</li><li id="SecurityGroup_0017__en-us_topic_0123332992_li15710173310112">On the <strong id="SecurityGroup_0017__en-us_topic_0123332992_b12372184413013">Security Groups</strong> page, click <strong id="SecurityGroup_0017__en-us_topic_0123332992_b123771444101">Manage Instance</strong> in the <strong id="SecurityGroup_0017__en-us_topic_0123332992_b33785449019">Operation</strong> column.</li><li id="SecurityGroup_0017__en-us_topic_0123332992_li510095217212">On the <strong id="SecurityGroup_0017__en-us_topic_0123332992_b842352706144648">Servers</strong> tab, locate the target server and click <strong id="SecurityGroup_0017__en-us_topic_0123332992_b842352706145255">Remove</strong> in the <strong id="SecurityGroup_0017__en-us_topic_0123332992_b84235270614534">Operation</strong> column to remove the server from current security group.</li><li id="SecurityGroup_0017__en-us_topic_0123332992_li1150617131044">On the <strong id="SecurityGroup_0017__en-us_topic_0123332992_b842352706145831">Extension NICs</strong> tab, locate the target extension NIC and click <strong id="SecurityGroup_0017__en-us_topic_0123332992_b84235270615032">Remove</strong> in the <strong id="SecurityGroup_0017__en-us_topic_0123332992_b84235270615038">Operation</strong> column to remove the NIC from the current security group.</li><li id="SecurityGroup_0017__en-us_topic_0123332992_li131424061815">Click <strong>Yes</strong>.</li></ol>
|
||||
<p id="SecurityGroup_0017__en-us_topic_0123332992_p13242193814303"><strong id="SecurityGroup_0017__en-us_topic_0123332992_b8423527061514">Removing multiple instances from a security group</strong></p>
|
||||
<p id="SecurityGroup_0017__en-us_topic_0123332992_p20411114216304">Select multiple servers and click <strong id="SecurityGroup_0017__en-us_topic_0123332992_b842352706163632">Remove</strong> above the server list to remove the selected servers from the current security group all at once.</p>
|
||||
<p id="SecurityGroup_0017__en-us_topic_0123332992_p11810143151111">Select multiple extension NICs and click <strong id="SecurityGroup_0017__en-us_topic_0123332992_b84235270616591">Remove</strong> above the extension NIC list to remove the selected extension NICs from the current security group all at once.</p>
|
||||
<div class="section" id="SecurityGroup_0017__section147074331319"><h4 class="sectiontitle">Removing Instances from a Security Group</h4><ol id="SecurityGroup_0017__ol2708193318119"><li id="SecurityGroup_0017__li8955159354">Log in to the management console.</li><li id="SecurityGroup_0017__li1770913314115">Click <span><img id="SecurityGroup_0017__en-us_topic_0013748726_image338921514480_1" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="SecurityGroup_0017__li457711953517">Click <span><img id="SecurityGroup_0017__vpc_vpc_0004_image586015376147_1" src="en-us_image_0000001500905066.png"></span> in the upper left corner and choose <strong id="SecurityGroup_0017__vpc_vpc_0004_b1656981942010_1"><span id="SecurityGroup_0017__vpc_vpc_0004_text2861113718142_1">Network</span><span id="SecurityGroup_0017__vpc_vpc_0004_text3861203713146_1"></span></strong> > <strong id="SecurityGroup_0017__vpc_vpc_0004_b65691219172012_1">Virtual Private Cloud</strong>.</li><li id="SecurityGroup_0017__li13710163311119">In the navigation pane on the left, choose <strong id="SecurityGroup_0017__b31988488616">Access Control</strong> > <strong id="SecurityGroup_0017__b320454816619">Security Groups</strong>.</li><li id="SecurityGroup_0017__li15710173310112">On the <strong id="SecurityGroup_0017__b12372184413013">Security Groups</strong> page, click <strong id="SecurityGroup_0017__b447214318185">Manage Instance</strong> in the <strong id="SecurityGroup_0017__b33785449019">Operation</strong> column.</li><li id="SecurityGroup_0017__li510095217212">On the <strong id="SecurityGroup_0017__b842352706144648">Servers</strong> tab, locate the target server and click <strong id="SecurityGroup_0017__b842352706145255">Remove</strong> in the <strong id="SecurityGroup_0017__b84235270614534">Operation</strong> column to remove the server from current security group.</li><li id="SecurityGroup_0017__li1150617131044">On the <strong id="SecurityGroup_0017__b842352706145831">Extension NICs</strong> tab, locate the target extension NIC and click <strong id="SecurityGroup_0017__b84235270615032">Remove</strong> in the <strong id="SecurityGroup_0017__b84235270615038">Operation</strong> column to remove the NIC from the current security group.</li><li id="SecurityGroup_0017__li131424061815">Click <strong id="SecurityGroup_0017__b17292422185516">Yes</strong>.</li></ol>
|
||||
<p id="SecurityGroup_0017__p13242193814303"><strong id="SecurityGroup_0017__b8423527061514">Removing multiple instances from a security group</strong></p>
|
||||
<ul id="SecurityGroup_0017__ul14837174611919"><li id="SecurityGroup_0017__li9838104617192">Select multiple servers and click <strong id="SecurityGroup_0017__b842352706163632">Remove</strong> above the server list to remove the selected servers from the current security group all at once.</li><li id="SecurityGroup_0017__li1983884614191">Select multiple extension NICs and click <strong id="SecurityGroup_0017__b84235270616591">Remove</strong> above the extension NIC list to remove the selected extension NICs from the current security group all at once.</li></ul>
|
||||
</div>
|
||||
<div class="section" id="SecurityGroup_0017__section12231126103410"><h4 class="sectiontitle">Follow-Up Operations</h4><p id="SecurityGroup_0017__p14912491346">You can delete the security groups that you no longer need. Deleting a security group will also delete all security group rules in the security group. For details, see <a href="vpc_SecurityGroup_0008.html">Deleting a Security Group</a>.</p>
|
||||
</div>
|
||||
</div>
|
||||
<div>
|
||||
|
15
docs/vpc/umn/eip_0003.html
Normal file
@ -0,0 +1,15 @@
|
||||
<a name="eip_0003"></a><a name="eip_0003"></a>
|
||||
|
||||
<h1 class="topictitle1">Exporting EIP Information</h1>
|
||||
<div id="body8662426"><div class="section" id="eip_0003__en-us_topic_0233468221_section50407262175221"><h4 class="sectiontitle">Scenarios</h4><p id="eip_0003__en-us_topic_0233468221_p61429748175232">The information of all EIPs under your account can be exported in an Excel file to a local directory. The file records the ID, status, type, bandwidth name, and bandwidth size of EIPs.</p>
|
||||
</div>
|
||||
<div class="section" id="eip_0003__en-us_topic_0233468221_section8755447183137"><h4 class="sectiontitle">Procedure</h4><ol id="eip_0003__en-us_topic_0233468221_ol53102723183146"><li id="eip_0003__en-us_topic_0233468221_li31781684183146">Log in to the management console.</li><li id="eip_0003__en-us_topic_0233468221_li840318282158">Click <span><img id="eip_0003__en-us_topic_0233468221_en-us_topic_0013748726_image338921514480" src="en-us_image_0141273034.png"></span> in the upper left corner and select the desired region and project.</li><li id="eip_0003__en-us_topic_0233468221_li548302634415">Click <span><img id="eip_0003__en-us_topic_0233468221_en-us_topic_0013748738_image8750174734412" src="en-us_image_0000001454059512.png"></span> in the upper left corner and choose <strong id="eip_0003__en-us_topic_0233468221_en-us_topic_0013748738_b29211533144914"><span id="eip_0003__en-us_topic_0233468221_en-us_topic_0013748738_text47511547154412">Network</span><span id="eip_0003__en-us_topic_0233468221_en-us_topic_0013748738_text1275116474447"></span></strong> > <strong id="eip_0003__en-us_topic_0233468221_en-us_topic_0013748738_b15921153318493">Elastic IP</strong>.</li><li id="eip_0003__en-us_topic_0233468221_li27041584183239">On the displayed page, click <span><img id="eip_0003__en-us_topic_0233468221_image658923131016" src="en-us_image_0233469196.png"></span> in the upper right corner of the EIP list.<p id="eip_0003__en-us_topic_0233468221_p4335838818357">The system will automatically export all EIPs in the current region of your account to an Excel file and download the file to a local directory.</p>
|
||||
</li></ol>
|
||||
</div>
|
||||
</div>
|
||||
<div>
|
||||
<div class="familylinks">
|
||||
<div class="parentlink"><strong>Parent topic:</strong> <a href="vpc_eip_0000.html">Elastic IP</a></div>
|
||||
</div>
|
||||
</div>
|
||||
|
Before Width: | Height: | Size: 58 KiB After Width: | Height: | Size: 42 KiB |
Before Width: | Height: | Size: 46 KiB After Width: | Height: | Size: 22 KiB |
Before Width: | Height: | Size: 65 KiB After Width: | Height: | Size: 27 KiB |
Before Width: | Height: | Size: 7.9 KiB After Width: | Height: | Size: 20 KiB |
Before Width: | Height: | Size: 5.9 KiB |
Before Width: | Height: | Size: 634 B |
Before Width: | Height: | Size: 634 B |
BIN
docs/vpc/umn/en-us_image_0000001207699446.png
Normal file
After Width: | Height: | Size: 35 KiB |
BIN
docs/vpc/umn/en-us_image_0000001207827554.png
Normal file
After Width: | Height: | Size: 27 KiB |
BIN
docs/vpc/umn/en-us_image_0000001208260576.png
Normal file
After Width: | Height: | Size: 56 KiB |
BIN
docs/vpc/umn/en-us_image_0000001209321492.png
Normal file
After Width: | Height: | Size: 25 KiB |
BIN
docs/vpc/umn/en-us_image_0000001209442636.png
Normal file
After Width: | Height: | Size: 32 KiB |
BIN
docs/vpc/umn/en-us_image_0000001209777270.png
Normal file
After Width: | Height: | Size: 26 KiB |
Before Width: | Height: | Size: 60 KiB After Width: | Height: | Size: 49 KiB |
Before Width: | Height: | Size: 48 KiB After Width: | Height: | Size: 31 KiB |
Before Width: | Height: | Size: 1004 B After Width: | Height: | Size: 1004 B |
Before Width: | Height: | Size: 377 B After Width: | Height: | Size: 377 B |
Before Width: | Height: | Size: 391 B |
Before Width: | Height: | Size: 391 B |
Before Width: | Height: | Size: 4.6 KiB |
BIN
docs/vpc/umn/en-us_image_0000001254335981.png
Normal file
After Width: | Height: | Size: 25 KiB |
Before Width: | Height: | Size: 7.7 KiB |
BIN
docs/vpc/umn/en-us_image_0000001337710801.png
Normal file
After Width: | Height: | Size: 388 B |
BIN
docs/vpc/umn/en-us_image_0000001454059512.png
Normal file
After Width: | Height: | Size: 128 B |
BIN
docs/vpc/umn/en-us_image_0000001461263993.png
Normal file
After Width: | Height: | Size: 357 B |
BIN
docs/vpc/umn/en-us_image_0000001462622484.png
Normal file
After Width: | Height: | Size: 30 KiB |
BIN
docs/vpc/umn/en-us_image_0000001464757610.png
Normal file
After Width: | Height: | Size: 46 KiB |
BIN
docs/vpc/umn/en-us_image_0000001465124712.png
Normal file
After Width: | Height: | Size: 270 B |
BIN
docs/vpc/umn/en-us_image_0000001490118666.png
Normal file
After Width: | Height: | Size: 128 B |
BIN
docs/vpc/umn/en-us_image_0000001500905066.png
Normal file
After Width: | Height: | Size: 128 B |
BIN
docs/vpc/umn/en-us_image_0000001503011070.png
Normal file
After Width: | Height: | Size: 128 B |
BIN
docs/vpc/umn/en-us_image_0000001503011074.png
Normal file
After Width: | Height: | Size: 128 B |
BIN
docs/vpc/umn/en-us_image_0000001503159042.png
Normal file
After Width: | Height: | Size: 128 B |
BIN
docs/vpc/umn/en-us_image_0000001503170970.png
Normal file
After Width: | Height: | Size: 128 B |