VPC UMN 20241008 version
Reviewed-by: Sarda, Priya <prsarda@noreply.gitea.eco.tsi-dev.otc-service.com> Co-authored-by: fanqinying <fanqinying@huawei.com> Co-committed-by: fanqinying <fanqinying@huawei.com>
@ -8,7 +8,7 @@
|
||||
<p id="FlowLog_0003__p14332047105117">For more information about the LTS service, see the <em id="FlowLog_0003__i131771016125018">Log Tank Service User Guide</em>.</p>
|
||||
</div>
|
||||
<div class="section" id="FlowLog_0003__section7359352124511"><h4 class="sectiontitle">Procedure</h4><ol id="FlowLog_0003__ol1599100493"><li id="FlowLog_0003__li16376160184113">Log in to the management console.</li></ol><ol start="2" id="FlowLog_0003__ol433412616258"><li id="FlowLog_0003__li1261701516256">Click <span><img id="FlowLog_0003__image87111240141819" src="en-us_image_0000001818982734.png"></span> in the upper left corner and select the desired region and project.</li></ol><ol start="3" id="FlowLog_0003__ol113341928344"><li id="FlowLog_0003__li65321958215">Click <span><img id="FlowLog_0003__en-us_topic_0118498850_image8750174734412" src="en-us_image_0000001865663109.png"></span> in the upper left corner and choose <strong id="FlowLog_0003__b1879018432820"><span id="FlowLog_0003__text5790134192813">Network</span><span id="FlowLog_0003__text13790246286"></span></strong> > <strong id="FlowLog_0003__b67909411283">Virtual Private Cloud</strong>.<p id="FlowLog_0003__p1182103318256">The <strong id="FlowLog_0003__b8628131015285">Virtual Private Cloud</strong> page is displayed.</p>
|
||||
</li></ol><ol start="4" id="FlowLog_0003__ol86651458101716"><li id="FlowLog_0003__li15362774171923">In the navigation pane on the left, choose <strong id="FlowLog_0003__b118476383503">VPC Flow Logs</strong>.</li><li id="FlowLog_0003__li56651158141710">In the upper right corner, click <strong id="FlowLog_0003__b84235270610118">Create VPC Flow Log</strong>. On the displayed page, configure parameters as prompted.<div class="fignone" id="FlowLog_0003__fig4520438111212"><span class="figcap"><b>Figure 1 </b>Create VPC Flow Log</span><br><span><img id="FlowLog_0003__image6520113821218" src="en-us_image_0000001865582905.png"></span></div>
|
||||
</li></ol><ol start="4" id="FlowLog_0003__ol86651458101716"><li id="FlowLog_0003__li15362774171923">In the navigation pane on the left, choose <strong id="FlowLog_0003__b118476383503">VPC Flow Logs</strong>.</li><li id="FlowLog_0003__li56651158141710">In the upper right corner, click <strong id="FlowLog_0003__b84235270610118">Create VPC Flow Log</strong>. On the displayed page, configure parameters as prompted.<div class="fignone" id="FlowLog_0003__fig14648162914143"><span class="figcap"><b>Figure 1 </b>Create VPC Flow Log</span><br><span><img id="FlowLog_0003__image8648102917149" src="en-us_image_0000002028956040.png"></span></div>
|
||||
<div class="p" id="FlowLog_0003__p159985372119">
|
||||
<div class="tablenoborder"><table cellpadding="4" cellspacing="0" summary="" id="FlowLog_0003__table134731712211" frame="border" border="1" rules="all"><caption><b>Table 1 </b>Parameter descriptions</caption><thead align="left"><tr id="FlowLog_0003__row1434717171627"><th align="left" class="cellrowborder" valign="top" width="19.24%" id="mcps1.3.3.5.2.3.1.2.4.1.1"><p id="FlowLog_0003__p234731711214"><strong id="FlowLog_0003__b729481085112">Parameter</strong></p>
|
||||
</th>
|
||||
|
@ -6,8 +6,8 @@
|
||||
</div></div>
|
||||
</div>
|
||||
<div class="section" id="FlowLog_0005__section7359352124511"><h4 class="sectiontitle">Procedure</h4><ol id="FlowLog_0005__ol1599100493"><li id="FlowLog_0005__li16376160184113">Log in to the management console.</li></ol><ol start="2" id="FlowLog_0005__ol433412616258"><li id="FlowLog_0005__li1261701516256">Click <span><img id="FlowLog_0005__image1283111201914" src="en-us_image_0000001818982734.png"></span> in the upper left corner and select the desired region and project.</li></ol><ol start="3" id="FlowLog_0005__ol113341928344"><li id="FlowLog_0005__li65321958215">Click <span><img id="FlowLog_0005__en-us_topic_0118498850_image8750174734412" src="en-us_image_0000001865582989.png"></span> in the upper left corner and choose <strong id="FlowLog_0005__b443115053714"><span id="FlowLog_0005__text17438506372">Network</span><span id="FlowLog_0005__text13431550143716"></span></strong> > <strong id="FlowLog_0005__b124316505370">Virtual Private Cloud</strong>.<p id="FlowLog_0005__p1182103318256">The <strong id="FlowLog_0005__b3665355143718">Virtual Private Cloud</strong> page is displayed.</p>
|
||||
</li></ol><ol start="4" id="FlowLog_0005__ol86651458101716"><li id="FlowLog_0005__li15362774171923">In the navigation pane on the left, choose <strong id="FlowLog_0005__b71643149529">VPC Flow Logs</strong>.</li><li id="FlowLog_0005__li7951185711459">Locate the row that contains the VPC flow log to be deleted and click <strong id="FlowLog_0005__b7845125318142">Delete</strong> in the <strong id="FlowLog_0005__b2084695319142">Operation</strong> column.<div class="fignone" id="FlowLog_0005__fig11695911145"><span class="figcap"><b>Figure 1 </b>Deleting a VPC flow log</span><br><span><img id="FlowLog_0005__image3696513415" src="en-us_image_0000001818983242.png"></span></div>
|
||||
</li><li id="FlowLog_0005__li56651158141710">Click <strong id="FlowLog_0005__b221712241717">Yes</strong> in the displayed dialog box.</li></ol>
|
||||
</li></ol><ol start="4" id="FlowLog_0005__ol86651458101716"><li id="FlowLog_0005__li15362774171923">In the navigation pane on the left, choose <strong id="FlowLog_0005__b71643149529">VPC Flow Logs</strong>.</li><li id="FlowLog_0005__li7951185711459">Locate the row that contains the VPC flow log to be deleted and click <strong id="FlowLog_0005__b7845125318142">Delete</strong> in the <strong id="FlowLog_0005__b2084695319142">Operation</strong> column.<div class="fignone" id="FlowLog_0005__fig134591512104318"><span class="figcap"><b>Figure 1 </b>Deleting a VPC flow log</span><br><span><img id="FlowLog_0005__image1345931244314" src="en-us_image_0000002033444204.png"></span></div>
|
||||
</li><li id="FlowLog_0005__li56651158141710">Click <strong id="FlowLog_0005__b221712241717">OK</strong> in the displayed dialog box.</li></ol>
|
||||
</div>
|
||||
</div>
|
||||
<div>
|
||||
|
@ -6,7 +6,7 @@
|
||||
<div class="section" id="FlowLog_0006__section5107937172118"><h4 class="sectiontitle">Notes and Constraints</h4><ul id="FlowLog_0006__ul9238346192115"><li id="FlowLog_0006__li4238146122111">After a VPC flow log is enabled, the system starts to collect flow logs in the next log collection period.</li><li id="FlowLog_0006__li141151714234">After a VPC flow log is disabled, the system stops collecting flow logs in the next log collection period. Generated flow logs will still be reported.</li></ul>
|
||||
</div>
|
||||
<div class="section" id="FlowLog_0006__section7359352124511"><h4 class="sectiontitle">Procedure</h4><ol id="FlowLog_0006__ol1599100493"><li id="FlowLog_0006__li16376160184113">Log in to the management console.</li></ol><ol start="2" id="FlowLog_0006__ol433412616258"><li id="FlowLog_0006__li1261701516256">Click <span><img id="FlowLog_0006__image59921057131810" src="en-us_image_0000001818982734.png"></span> in the upper left corner and select the desired region and project.</li></ol><ol start="3" id="FlowLog_0006__ol113341928344"><li id="FlowLog_0006__li65321958215">Click <span><img id="FlowLog_0006__en-us_topic_0118498850_image8750174734412" src="en-us_image_0000001818983174.png"></span> in the upper left corner and choose <strong id="FlowLog_0006__b1390013296375"><span id="FlowLog_0006__text13900229193718">Network</span><span id="FlowLog_0006__text1900829173716"></span></strong> > <strong id="FlowLog_0006__b159001629173711">Virtual Private Cloud</strong>.<p id="FlowLog_0006__p1182103318256">The <strong id="FlowLog_0006__b917763412373">Virtual Private Cloud</strong> page is displayed.</p>
|
||||
</li></ol><ol start="4" id="FlowLog_0006__ol86651458101716"><li id="FlowLog_0006__li15362774171923">In the navigation pane on the left, choose <strong id="FlowLog_0006__b14531953153514">VPC Flow Logs</strong>.</li><li id="FlowLog_0006__li11786153123011">Locate the VPC flow log to be enabled or disabled, and choose <strong id="FlowLog_0006__b1417519538118">More</strong> > <strong id="FlowLog_0006__b18341923141120">Enable</strong> or <strong id="FlowLog_0006__b10997182191214">More</strong> > <strong id="FlowLog_0006__b8834623191119">Disable</strong> in the <strong id="FlowLog_0006__b1583417239116">Operation</strong> column.</li><li id="FlowLog_0006__li488372733118">Click <strong id="FlowLog_0006__b84235270615469">Yes</strong>.</li></ol>
|
||||
</li></ol><ol start="4" id="FlowLog_0006__ol86651458101716"><li id="FlowLog_0006__li15362774171923">In the navigation pane on the left, choose <strong id="FlowLog_0006__b14531953153514">VPC Flow Logs</strong>.</li><li id="FlowLog_0006__li11786153123011">Locate the VPC flow log to be enabled or disabled, and choose <strong id="FlowLog_0006__b1417519538118">More</strong> > <strong id="FlowLog_0006__b18341923141120">Enable</strong> or <strong id="FlowLog_0006__b10997182191214">More</strong> > <strong id="FlowLog_0006__b8834623191119">Disable</strong> in the <strong id="FlowLog_0006__b1583417239116">Operation</strong> column.</li><li id="FlowLog_0006__li488372733118">Click <strong id="FlowLog_0006__b84235270615469">OK</strong>.</li></ol>
|
||||
</div>
|
||||
</div>
|
||||
<div>
|
||||
|
@ -5,9 +5,9 @@
|
||||
</div>
|
||||
<div class="section" id="SecurityGroup_0004__section5619104211210"><h4 class="sectiontitle">Procedure</h4><ol id="SecurityGroup_0004__ol193620537316"><li id="SecurityGroup_0004__li2849879021595">Log in to the management console.</li></ol><ol start="2" id="SecurityGroup_0004__ol1527262085715"><li id="SecurityGroup_0004__li11279102515716">Click <span><img id="SecurityGroup_0004__en-us_topic_0118498823_image338921514480" src="en-us_image_0000001818982734.png"></span> in the upper left corner and select the desired region and project.</li><li id="SecurityGroup_0004__li65321958215">Click <span><img id="SecurityGroup_0004__en-us_topic_0118498850_image8750174734412" src="en-us_image_0000001818982858.png"></span> in the upper left corner and choose <strong id="SecurityGroup_0004__b16700132282918"><span id="SecurityGroup_0004__text137001822112915">Network</span><span id="SecurityGroup_0004__text8700132217298"></span></strong> > <strong id="SecurityGroup_0004__b070062213298">Virtual Private Cloud</strong>.<p id="SecurityGroup_0004__p1182103318256">The <strong id="SecurityGroup_0004__b317112962914">Virtual Private Cloud</strong> page is displayed.</p>
|
||||
</li><li id="SecurityGroup_0004__li18692101019111">In the navigation pane on the left, choose <strong id="SecurityGroup_0004__b73192488916">Access Control</strong> > <strong id="SecurityGroup_0004__b131914485916">Security Groups</strong>.<p id="SecurityGroup_0004__p40747164518">The security group list is displayed.</p>
|
||||
</li><li id="SecurityGroup_0004__li107071926124612">Locate the row that contains the target security group and click <strong id="SecurityGroup_0004__b126239513917">Manage Rule</strong> in the <strong id="SecurityGroup_0004__b1062355118920">Operation</strong> column.<p id="SecurityGroup_0004__p7920227204615">The page for configuring security group rules is displayed.</p>
|
||||
</li><li id="SecurityGroup_0004__li107071926124612">Locate the row that contains the target security group and click <strong id="SecurityGroup_0004__b126239513917">Manage Rules</strong> in the <strong id="SecurityGroup_0004__b1062355118920">Operation</strong> column.<p id="SecurityGroup_0004__p7920227204615">The page for configuring security group rules is displayed.</p>
|
||||
</li><li id="SecurityGroup_0004__li1063572655813">On the <strong id="SecurityGroup_0004__b144791401105">Inbound Rules</strong> tab, click <strong id="SecurityGroup_0004__b1547914017109">Fast-Add Rule</strong>.<p id="SecurityGroup_0004__p1442168204914">The <strong id="SecurityGroup_0004__b3732142121018">Fast-Add Inbound Rule</strong> dialog box is displayed.</p>
|
||||
</li><li id="SecurityGroup_0004__li468912151226">Configure required parameters.<div class="p" id="SecurityGroup_0004__p18991191312513"><a name="SecurityGroup_0004__li468912151226"></a><a name="li468912151226"></a><div class="fignone" id="SecurityGroup_0004__fig1127533152411"><span class="figcap"><b>Figure 1 </b>Fast-Add Inbound Rule</span><br><span><img id="SecurityGroup_0004__image427617310248" src="en-us_image_0000001818823074.png"></span></div>
|
||||
</li><li id="SecurityGroup_0004__li468912151226">Configure required parameters.<div class="p" id="SecurityGroup_0004__p18991191312513"><a name="SecurityGroup_0004__li468912151226"></a><a name="li468912151226"></a><div class="fignone" id="SecurityGroup_0004__fig126185585719"><span class="figcap"><b>Figure 1 </b>Fast-Add Inbound Rule</span><br><span><img id="SecurityGroup_0004__image17655514575" src="en-us_image_0000002029168046.png"></span></div>
|
||||
|
||||
<div class="tablenoborder"><table cellpadding="4" cellspacing="0" summary="" id="SecurityGroup_0004__table111445216564" width="90%" frame="border" border="1" rules="all"><caption><b>Table 1 </b>Inbound rule parameter description</caption><thead align="left"><tr id="SecurityGroup_0004__row1811565205613"><th align="left" class="cellrowborder" valign="top" width="12.7%" id="mcps1.3.2.3.6.1.2.2.4.1.1"><p id="SecurityGroup_0004__p51151452125620">Parameter</p>
|
||||
</th>
|
||||
@ -42,6 +42,23 @@
|
||||
<td class="cellrowborder" valign="top" width="18%" headers="mcps1.3.2.3.6.1.2.2.4.1.3 "><p id="SecurityGroup_0004__p611613524569">0.0.0.0/0</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="SecurityGroup_0004__row187668471842"><td class="cellrowborder" valign="top" width="12.7%" headers="mcps1.3.2.3.6.1.2.2.4.1.1 "><p id="SecurityGroup_0004__p1394314020715">Action</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="69.3%" headers="mcps1.3.2.3.6.1.2.2.4.1.2 "><div class="p" id="SecurityGroup_0004__p544113202145">Allow or Deny<ul id="SecurityGroup_0004__en-us_topic_0118534005_ul490721712116"><li id="SecurityGroup_0004__en-us_topic_0118534005_li1194212336196">If the <strong id="SecurityGroup_0004__b178008948810144">Action</strong> is set to <strong id="SecurityGroup_0004__b17094006810144">Allow</strong>, access from the source is allowed to ECSs in the security group over specified ports.</li><li id="SecurityGroup_0004__en-us_topic_0118534005_li17907131751116">If the <strong id="SecurityGroup_0004__b1995315323266">Action</strong> is set to <strong id="SecurityGroup_0004__b1295314327261">Deny</strong>, access from the source is denied to ECSs in the security group over specified ports.</li></ul>
|
||||
</div>
|
||||
<p id="SecurityGroup_0004__p6192322932">Deny rules take precedence over allow rules of the same priority.</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="18%" headers="mcps1.3.2.3.6.1.2.2.4.1.3 "><p id="SecurityGroup_0004__p149431640575">Allow</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="SecurityGroup_0004__row1345544161011"><td class="cellrowborder" valign="top" width="12.7%" headers="mcps1.3.2.3.6.1.2.2.4.1.1 "><p id="SecurityGroup_0004__p7490135617111">Priority</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="69.3%" headers="mcps1.3.2.3.6.1.2.2.4.1.2 "><p id="SecurityGroup_0004__p39329432150">Security group rule priority.</p>
|
||||
<p id="SecurityGroup_0004__p94904561715">The priority value is from 1 to 100. The default value is 1 and has the highest priority. The security group rule with a smaller value has a higher priority.</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="18%" headers="mcps1.3.2.3.6.1.2.2.4.1.3 "><p id="SecurityGroup_0004__p849010564113">1</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="SecurityGroup_0004__row111615525565"><td class="cellrowborder" valign="top" width="12.7%" headers="mcps1.3.2.3.6.1.2.2.4.1.1 "><p id="SecurityGroup_0004__p1711655217565">Description</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="69.3%" headers="mcps1.3.2.3.6.1.2.2.4.1.2 "><p id="SecurityGroup_0004__p1211611525564">(Optional) Supplementary information about the security group rule.</p>
|
||||
@ -56,7 +73,7 @@
|
||||
</div>
|
||||
</li><li id="SecurityGroup_0004__li17702418175013">Click <strong id="SecurityGroup_0004__b8881259141016">OK</strong>.<p id="SecurityGroup_0004__p58147211519">The inbound rule list is displayed and you can view your added rule.</p>
|
||||
</li><li id="SecurityGroup_0004__li117291459204218">On the <strong id="SecurityGroup_0004__b19622071118">Outbound Rules</strong> tab, click <strong id="SecurityGroup_0004__b962157101112">Fast-Add Rule</strong>.<p id="SecurityGroup_0004__p1964712134312">The <strong id="SecurityGroup_0004__b05251122191119">Fast-Add Outbound Rule</strong> dialog box is displayed.</p>
|
||||
</li><li id="SecurityGroup_0004__li5604143282711">Configure required parameters.<div class="p" id="SecurityGroup_0004__p383322519611"><a name="SecurityGroup_0004__li5604143282711"></a><a name="li5604143282711"></a><div class="fignone" id="SecurityGroup_0004__fig164897019299"><span class="figcap"><b>Figure 2 </b>Fast-Add Outbound Rule</span><br><span><img id="SecurityGroup_0004__image1548970142912" src="en-us_image_0000001865582617.png"></span></div>
|
||||
</li><li id="SecurityGroup_0004__li5604143282711">Configure required parameters.<div class="p" id="SecurityGroup_0004__p383322519611"><a name="SecurityGroup_0004__li5604143282711"></a><a name="li5604143282711"></a><div class="fignone" id="SecurityGroup_0004__fig15513445919"><span class="figcap"><b>Figure 2 </b>Fast-Add Outbound Rule</span><br><span><img id="SecurityGroup_0004__image85514105916" src="en-us_image_0000002065209133.png"></span></div>
|
||||
|
||||
<div class="tablenoborder"><table cellpadding="4" cellspacing="0" summary="" id="SecurityGroup_0004__table0614192319232" width="90%" frame="border" border="1" rules="all"><caption><b>Table 2 </b>Outbound rule parameter description</caption><thead align="left"><tr id="SecurityGroup_0004__row19614623202312"><th align="left" class="cellrowborder" valign="top" width="12.34%" id="mcps1.3.2.3.9.1.2.2.4.1.1"><p id="SecurityGroup_0004__p361592319230">Parameter</p>
|
||||
</th>
|
||||
@ -90,6 +107,23 @@
|
||||
<td class="cellrowborder" valign="top" width="18%" headers="mcps1.3.2.3.9.1.2.2.4.1.3 "><p id="SecurityGroup_0004__p4617102352310">0.0.0.0/0</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="SecurityGroup_0004__row77156821619"><td class="cellrowborder" valign="top" width="12.34%" headers="mcps1.3.2.3.9.1.2.2.4.1.1 "><p id="SecurityGroup_0004__p461592313236">Priority</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="69.66%" headers="mcps1.3.2.3.9.1.2.2.4.1.2 "><p id="SecurityGroup_0004__p050041314189">Security group rule priority.</p>
|
||||
<p id="SecurityGroup_0004__p206155235231">The priority value is from 1 to 100. The default value is 1 and has the highest priority. The security group rule with a smaller value has a higher priority.</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="18%" headers="mcps1.3.2.3.9.1.2.2.4.1.3 "><p id="SecurityGroup_0004__p1361515237237">1</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="SecurityGroup_0004__row1090916103161"><td class="cellrowborder" valign="top" width="12.34%" headers="mcps1.3.2.3.9.1.2.2.4.1.1 "><p id="SecurityGroup_0004__p186151423182317">Action</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="69.66%" headers="mcps1.3.2.3.9.1.2.2.4.1.2 "><div class="p" id="SecurityGroup_0004__p1480419441613">Allow or Deny<ul id="SecurityGroup_0004__en-us_topic_0118534005_ul1357316358171"><li id="SecurityGroup_0004__en-us_topic_0118534005_li12573935151710">If the <strong id="SecurityGroup_0004__b28963283610144">Action</strong> is set to <strong id="SecurityGroup_0004__b67915613310144">Allow</strong>, access from ECSs in the security group is allowed to the destination over specified ports.</li><li id="SecurityGroup_0004__en-us_topic_0118534005_li3131196111919">If the <strong id="SecurityGroup_0004__b140629103710144">Action</strong> is set to <strong id="SecurityGroup_0004__b163990541510144">Deny</strong>, access from ECSs in the security group is denied to the destination over specified ports.</li></ul>
|
||||
</div>
|
||||
<p id="SecurityGroup_0004__p0306172810410">Deny rules take precedence over allow rules of the same priority.</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="18%" headers="mcps1.3.2.3.9.1.2.2.4.1.3 "><p id="SecurityGroup_0004__p196161230233">Allow</p>
|
||||
</td>
|
||||
</tr>
|
||||
<tr id="SecurityGroup_0004__row196181723162317"><td class="cellrowborder" valign="top" width="12.34%" headers="mcps1.3.2.3.9.1.2.2.4.1.1 "><p id="SecurityGroup_0004__p2061811237237">Description</p>
|
||||
</td>
|
||||
<td class="cellrowborder" valign="top" width="69.66%" headers="mcps1.3.2.3.9.1.2.2.4.1.2 "><p id="SecurityGroup_0004__p0618182392312">(Optional) Supplementary information about the security group rule.</p>
|
||||
|
@ -1,6 +1,6 @@
|
||||
<a name="SecurityGroup_0005"></a><a name="SecurityGroup_0005"></a>
|
||||
|
||||
<h1 class="topictitle1">Allowing Common Ports with A Few Clicks</h1>
|
||||
<h1 class="topictitle1">Allowing Common Ports with a Few Clicks</h1>
|
||||
<div id="body0000001646960360"><div class="section" id="SecurityGroup_0005__section111711223183718"><h4 class="sectiontitle">Scenarios</h4><div class="p" id="SecurityGroup_0005__p57971737163513">You can configure a security group to allow common ports with a few clicks. This function is suitable for the following scenarios:<ul id="SecurityGroup_0005__ul5362904812"><li id="SecurityGroup_0005__en-us_topic_0118534004_li123617917487">Remotely log in to ECSs.</li><li id="SecurityGroup_0005__en-us_topic_0118534004_li792741712487">Use the ping command to test ECS connectivity.</li><li id="SecurityGroup_0005__en-us_topic_0118534004_li64071030164815">ECSs functioning as web servers provide website access services.</li></ul>
|
||||
</div>
|
||||
<p id="SecurityGroup_0005__p192717293514"><a href="#SecurityGroup_0005__table117828131111">Table 1</a> describes the common ports that can be opened with a few clicks.</p>
|
||||
|
@ -9,15 +9,15 @@
|
||||
</li><li id="SecurityGroup_0017__li61193616483">In the security group list, locate the row that contains the security group and click <strong id="SecurityGroup_0017__b771214521337">Manage Instances</strong> in the <strong id="SecurityGroup_0017__b1871355243310">Operation</strong> column.<p id="SecurityGroup_0017__p100911194312">The <strong id="SecurityGroup_0017__b12887181919406">Associated Instances</strong> tab is displayed.</p>
|
||||
</li><li id="SecurityGroup_0017__li17819483234">Click an instance type.<p id="SecurityGroup_0017__p212255420232"><a name="SecurityGroup_0017__li17819483234"></a><a name="li17819483234"></a>The following operations use <strong id="SecurityGroup_0017__b955634924019">Servers</strong> as an example.</p>
|
||||
</li><li id="SecurityGroup_0017__li16925141642314">Click the <strong id="SecurityGroup_0017__b1463250104111">Servers</strong> tab and click <strong id="SecurityGroup_0017__b1821478154117">Add</strong>.<p id="SecurityGroup_0017__p1388682452418">The <strong id="SecurityGroup_0017__b341518914111">Add Server</strong> dialog box is displayed.</p>
|
||||
</li><li id="SecurityGroup_0017__li1411153214246">In the server list, select one or more servers and click OK to add them to the current security group.</li></ol>
|
||||
</li><li id="SecurityGroup_0017__li1411153214246">In the server list, select one or more servers and click <strong id="SecurityGroup_0017__b828475416111">OK</strong> to add them to the current security group.</li></ol>
|
||||
</div>
|
||||
<div class="section" id="SecurityGroup_0017__section147074331319"><h4 class="sectiontitle">Removing an Instance from a Security Group</h4><p id="SecurityGroup_0017__p16615356142514">An instance must be added to at least one security group. If you want to remove an instance from a security group, the instance must be associated with at least two security groups now.</p>
|
||||
<ol id="SecurityGroup_0017__ol2708193318119"><li id="SecurityGroup_0017__li8955159354">Log in to the management console.</li><li id="SecurityGroup_0017__li1770913314115">Click <span><img id="SecurityGroup_0017__image476994749" src="en-us_image_0000001818982734.png"></span> in the upper left corner and select the desired region and project.</li><li id="SecurityGroup_0017__li5766141316458">Click <span><img id="SecurityGroup_0017__image10766141319453" src="en-us_image_0000001865582721.png"></span> in the upper left corner and choose <strong id="SecurityGroup_0017__b090413613712"><span id="SecurityGroup_0017__text390493653717">Network</span><span id="SecurityGroup_0017__text20904193603712"></span></strong> > <strong id="SecurityGroup_0017__b16904183616376">Virtual Private Cloud</strong>.<p id="SecurityGroup_0017__p11767191320456">The <strong id="SecurityGroup_0017__b19977114263710">Virtual Private Cloud</strong> page is displayed.</p>
|
||||
<ol id="SecurityGroup_0017__ol2708193318119"><li id="SecurityGroup_0017__li8955159354">Log in to the management console.</li><li id="SecurityGroup_0017__li1770913314115">Click <span><img id="SecurityGroup_0017__image837831744" src="en-us_image_0000001818982734.png"></span> in the upper left corner and select the desired region and project.</li><li id="SecurityGroup_0017__li5766141316458">Click <span><img id="SecurityGroup_0017__image10766141319453" src="en-us_image_0000001865582721.png"></span> in the upper left corner and choose <strong id="SecurityGroup_0017__b090413613712"><span id="SecurityGroup_0017__text390493653717">Network</span><span id="SecurityGroup_0017__text20904193603712"></span></strong> > <strong id="SecurityGroup_0017__b16904183616376">Virtual Private Cloud</strong>.<p id="SecurityGroup_0017__p11767191320456">The <strong id="SecurityGroup_0017__b19977114263710">Virtual Private Cloud</strong> page is displayed.</p>
|
||||
</li><li id="SecurityGroup_0017__li155681561266">In the navigation pane on the left, choose <strong id="SecurityGroup_0017__b126787217514">Access Control</strong> > <strong id="SecurityGroup_0017__b1867810275116">Security Groups</strong>.<p id="SecurityGroup_0017__p55684565264">The security group list is displayed.</p>
|
||||
</li><li id="SecurityGroup_0017__li1456875612268">In the security group list, locate the row that contains the security group and click <strong id="SecurityGroup_0017__b14637153616516">Manage Instances</strong> in the <strong id="SecurityGroup_0017__b5638183635118">Operation</strong> column.<p id="SecurityGroup_0017__p756895615261">The <strong id="SecurityGroup_0017__b18614184817515">Associated Instances</strong> tab is displayed.</p>
|
||||
</li><li id="SecurityGroup_0017__li056825618262">Click an instance type.<p id="SecurityGroup_0017__p1856875682612"><a name="SecurityGroup_0017__li056825618262"></a><a name="li056825618262"></a>The following operations use <strong id="SecurityGroup_0017__b3583185165217">Servers</strong> as an example.</p>
|
||||
</li><li id="SecurityGroup_0017__li622212073511">Click the <strong id="SecurityGroup_0017__b149916167531">Servers</strong> tab, select one or more servers, and click <strong id="SecurityGroup_0017__b9533163975315">Remove</strong> in the upper left corner of the server list.<p id="SecurityGroup_0017__p3507243173516">A confirmation dialog box is displayed.</p>
|
||||
</li><li id="SecurityGroup_0017__li2047029193517">Confirm the information and click <strong id="SecurityGroup_0017__b53251758165419">Yes</strong>.</li></ol>
|
||||
</li><li id="SecurityGroup_0017__li2047029193517">Confirm the information and click <strong id="SecurityGroup_0017__b157649143274">OK</strong>.</li></ol>
|
||||
</div>
|
||||
<div class="section" id="SecurityGroup_0017__section12231126103410"><h4 class="sectiontitle">Follow-Up Operations</h4><p id="SecurityGroup_0017__p14912491346">You can delete the security groups that you no longer need. Deleting a security group will also delete all security group rules in the security group. For details, see <a href="vpc_SecurityGroup_0008.html">Deleting a Security Group</a>.</p>
|
||||
</div>
|
||||
|
@ -1,14 +1,14 @@
|
||||
<a name="acl_0001"></a><a name="acl_0001"></a>
|
||||
|
||||
<h1 class="topictitle1"><span id="text15411215417">Firewall</span><span id="text741121516120"></span> Overview</h1>
|
||||
<div id="body1544424023306"><p id="acl_0001__p13781551490">A <span id="acl_0001__text11248715171311">firewall</span><span id="acl_0001__text45551720134"></span> is an optional layer of security for your subnets. After you associate one or more subnets with a <span id="acl_0001__text13717202713198">firewall</span><span id="acl_0001__text2717122731911"></span>, you can control traffic in and out of the subnets.</p>
|
||||
<p id="acl_0001__p8060118"><a href="#acl_0001__fig9582182315479">Figure 1</a> shows how a firewall works.</p>
|
||||
<h1 class="topictitle1"><span id="text15411215417">Firewall</span> Overview</h1>
|
||||
<div id="body1544424023306"><p id="acl_0001__p13781551490">A <span id="acl_0001__text11248715171311">firewall</span> is an optional layer of security for your subnets. After you associate one or more subnets with a <span id="acl_0001__text13717202713198">firewall</span>, you can control traffic in and out of the subnets.</p>
|
||||
<p id="acl_0001__p8060118">For details, see <a href="#acl_0001__fig9582182315479">Figure 1</a>.</p>
|
||||
<div class="fignone" id="acl_0001__fig9582182315479"><a name="acl_0001__fig9582182315479"></a><a name="fig9582182315479"></a><span class="figcap"><b>Figure 1 </b>Security groups and firewalls</span><br><span><img class="eddx" id="acl_0001__en-us_topic_0118534001_image048361820309" src="en-us_image_0000001818982946.png"></span></div>
|
||||
<p id="acl_0001__p668217610324">Similar to security groups, <span id="acl_0001__text127138429139">firewall</span><span id="acl_0001__text6713942101313"></span>s control access to subnets and add an additional layer of defense to your subnets. Security groups only have the "allow" rules, but <span id="acl_0001__text3310185011135">firewall</span><span id="acl_0001__text12310115051319"></span>s have both "allow" and "deny" rules. You can use <span id="acl_0001__text1554161716440">firewall</span><span id="acl_0001__text19555817144413"></span>s together with security groups to implement comprehensive and fine-grained access control. </p>
|
||||
<p id="acl_0001__p6398184124212"><a href="en-us_topic_0052003963.html">Differences Between Security Groups and Firewalls</a> summarizes the basic differences between security groups and <span id="acl_0001__text137415412138">firewall</span><span id="acl_0001__text4374125421314"></span>s.</p>
|
||||
<div class="section" id="acl_0001__section1952742625114"><h4 class="sectiontitle"><span id="acl_0001__text16549171719105">Firewall</span><span id="acl_0001__text215101619277"></span> Basics</h4><ul id="acl_0001__ul16670101419510"><li id="acl_0001__li1767091455112">Your VPC does not come with a <span id="acl_0001__text1681559201318">firewall</span><span id="acl_0001__text1481195921318"></span>, but you can create a <span id="acl_0001__text193132025161912">firewall</span><span id="acl_0001__text131517252195"></span> and associate it with a VPC subnet if required. By default, each <span id="acl_0001__text17139141019144">firewall</span><span id="acl_0001__text1313941001416"></span> denies all inbound traffic to and outbound traffic from the associated subnet until you add rules.</li><li id="acl_0001__li9670101412519">You can associate a <span id="acl_0001__text129685145149">firewall</span><span id="acl_0001__text16968514181411"></span> with multiple subnets. However, a subnet can only be associated with one <span id="acl_0001__text1922420915259">firewall</span><span id="acl_0001__text12259912252"></span> at a time.</li><li id="acl_0001__li1670714145119">Each newly created <span id="acl_0001__text138342217143">firewall</span><span id="acl_0001__text1183132212149"></span> is in the <strong id="acl_0001__b0772925121511">Inactive</strong> state until you associate subnets with it.</li><li id="acl_0001__li122989913316"><span id="acl_0001__en-us_topic_0118499057_text1288374394312">Firewall</span><span id="acl_0001__en-us_topic_0118499057_text168841343174317"></span>s use connection tracking to track traffic to and from instances. Changes to inbound and outbound rules do not take effect immediately for the existing traffic.<p id="acl_0001__en-us_topic_0118499057_p12584634185913">If you add, modify, or delete a <span id="acl_0001__en-us_topic_0118499057_text7584193414598">firewall</span><span id="acl_0001__en-us_topic_0118499057_text16584434165917"></span> rule, or associate or disassociate a subnet with or from a <span id="acl_0001__en-us_topic_0118499057_text8878017134511">firewall</span><span id="acl_0001__en-us_topic_0118499057_text17879101734516"></span>, all the inbound and outbound persistent connections will not be disconnected. New rules will only be applied for the new connections.</p>
|
||||
<p id="acl_0001__p668217610324">Similar to security groups, <span id="acl_0001__text127138429139">firewall</span>s control access to subnets and add an additional layer of defense to your subnets. Security groups only have the "allow" rules, but <span id="acl_0001__text3310185011135">firewall</span>s have both "allow" and "deny" rules. You can use <span id="acl_0001__text1554161716440">firewall</span>s together with security groups to implement comprehensive and fine-grained access control. </p>
|
||||
<p id="acl_0001__p6398184124212"><a href="en-us_topic_0052003963.html">Differences Between Security Groups and Firewalls</a> summarizes the basic differences between security groups and <span id="acl_0001__text137415412138">firewall</span>s.</p>
|
||||
<div class="section" id="acl_0001__section1952742625114"><h4 class="sectiontitle"><span id="acl_0001__text16549171719105">Firewall</span> Basics</h4><ul id="acl_0001__ul16670101419510"><li id="acl_0001__li1767091455112">Your VPC does not come with a <span id="acl_0001__text1681559201318">firewall</span>, but you can create a <span id="acl_0001__text193132025161912">firewall</span> and associate it with a VPC subnet if required. By default, each <span id="acl_0001__text17139141019144">firewall</span> denies all inbound traffic to and outbound traffic from the associated subnet until you add rules.</li><li id="acl_0001__li9670101412519">You can associate a <span id="acl_0001__text129685145149">firewall</span> with multiple subnets. However, a subnet can only be associated with one <span id="acl_0001__text1922420915259">firewall</span> at a time.</li><li id="acl_0001__li1670714145119">Each newly created <span id="acl_0001__text138342217143">firewall</span> is in the <strong id="acl_0001__b0772925121511">Inactive</strong> state until you associate subnets with it.</li><li id="acl_0001__li122989913316"><span id="acl_0001__en-us_topic_0118499057_text55841134105919">Firewalls</span> use connection tracking to track traffic to and from instances. Changes to inbound and outbound rules do not take effect immediately for the existing traffic.<p id="acl_0001__en-us_topic_0118499057_p12584634185913">If you add, modify, or delete a <span id="acl_0001__text58351373372">firewall</span> rule, or associate or disassociate a subnet with or from a <span id="acl_0001__text2836167183717">firewall</span>, all the inbound and outbound persistent connections will not be disconnected. New rules will only be applied for the new connections.</p>
|
||||
</li></ul>
|
||||
<div class="notice" id="acl_0001__note191885121325"><span class="noticetitle"><img src="public_sys-resources/notice_3.0-en-us.png"> </span><div class="noticebody"><p id="acl_0001__en-us_topic_0118499057_p982720180553">After a persistent connection is disconnected, new connections will not be established immediately until the timeout period of connection tracking expires. For example, after an ICMP persistent connection is disconnected, a new connection will be established and a new rule will apply when the timeout period (30s) expires.</p>
|
||||
<div class="notice" id="acl_0001__note191885121325"><span class="noticetitle"><img src="public_sys-resources/notice_3.0-en-us.png"> </span><div class="noticebody"><p id="acl_0001__en-us_topic_0118499057_p982720180553">After a persistent connection is disconnected, new connections will not be established immediately until the timeout period of connection tracking expires. For example, after an ICMP persistent connection is disconnected, a new connection will be established and a new rule will be applied when the timeout period (30s) expires.</p>
|
||||
<ul id="acl_0001__en-us_topic_0118499057_ul0719132175510"><li id="acl_0001__en-us_topic_0118499057_li31956209554">The timeout period of connection tracking varies by protocol. The timeout period of a TCP connection in the established state is 600s, and that of an ICMP connection is 30s. For other protocols, if packets are received in both inbound and outbound directions, the connection tracking timeout period is 180s. If packets are received only in one direction, the connection tracking timeout period is 30s.</li><li id="acl_0001__en-us_topic_0118499057_li131754585612">The timeout period of TCP connections varies by connection status. The timeout period of a TCP connection in the established state is 600s, and that of a TCP connection in the FIN-WAIT state is 30s.</li></ul>
|
||||
</div></div>
|
||||
</div>
|
||||
|
@ -1,9 +1,11 @@
|
||||
<a name="eip_0003"></a><a name="eip_0003"></a>
|
||||
|
||||
<h1 class="topictitle1">Exporting EIP Information</h1>
|
||||
<div id="body8662426"><div class="section" id="eip_0003__en-us_topic_0233468221_section50407262175221"><h4 class="sectiontitle">Scenarios</h4><p id="eip_0003__en-us_topic_0233468221_p61429748175232">The information of all EIPs under your account can be exported in an Excel file to a local directory. The file records the ID, status, type, bandwidth name, and bandwidth size of EIPs.</p>
|
||||
<h1 class="topictitle1">Exporting EIPs</h1>
|
||||
<div id="body8662426"><div class="section" id="eip_0003__en-us_topic_0233468221_section50407262175221"><h4 class="sectiontitle">Scenarios</h4><p id="eip_0003__p16156114716">The information of all EIPs under your account can be exported in an Excel file to a local directory.</p>
|
||||
<p id="eip_0003__p126141064712">The file records the EIP, EIP ID, status, type, bandwidth name, bandwidth size, bandwidth id, Instance Type, Instance Name, Instance ID, Tags and Created.</p>
|
||||
</div>
|
||||
<div class="section" id="eip_0003__en-us_topic_0233468221_section8755447183137"><h4 class="sectiontitle">Procedure</h4><ol id="eip_0003__en-us_topic_0233468221_ol53102723183146"><li id="eip_0003__en-us_topic_0233468221_li31781684183146">Log in to the management console.</li><li id="eip_0003__en-us_topic_0233468221_li840318282158">Click <span><img id="eip_0003__en-us_topic_0233468221_en-us_topic_0118498823_image338921514480" src="en-us_image_0000001818982734.png"></span> in the upper left corner and select the desired region and project.</li><li id="eip_0003__en-us_topic_0233468221_li548302634415">Click <span><img id="eip_0003__image81906989185433" src="en-us_image_0000001649841616.png"></span> in the upper left corner, and choose <span id="eip_0003__en-us_topic_0233468221_en-us_topic_0118498850_text47511547154412"><strong id="eip_0003__b18444724888">Network</strong></span><span id="eip_0003__en-us_topic_0233468221_en-us_topic_0118498850_text1275116474447"></span> > <span id="eip_0003__en-us_topic_0233468221_en-us_topic_0118498850_text1075194744412"></span><span id="eip_0003__en-us_topic_0233468221_en-us_topic_0118498850_text1075114473445"><strong id="eip_0003__b55411101994">Elastic IP</strong></span>.</li><li id="eip_0003__en-us_topic_0233468221_li7741101914197">On the <span id="eip_0003__en-us_topic_0233468221_text874201919191"></span><span id="eip_0003__en-us_topic_0233468221_text18742119191911">EIP</span> list page, select one or more EIPs and click <strong id="eip_0003__b53622958885433">Export</strong> in the upper left corner.<p id="eip_0003__en-us_topic_0233468221_p6742219111913">The system will automatically export all EIPs to an Excel file and download the file to a local directory.</p>
|
||||
<div class="section" id="eip_0003__en-us_topic_0233468221_section8755447183137"><h4 class="sectiontitle">Procedure</h4><ol id="eip_0003__en-us_topic_0233468221_ol53102723183146"><li id="eip_0003__en-us_topic_0233468221_li31781684183146">Log in to the management console.</li><li id="eip_0003__en-us_topic_0233468221_li840318282158">Click <span><img id="eip_0003__en-us_topic_0233468221_en-us_topic_0118498823_image338921514480" src="en-us_image_0000001818982734.png"></span> in the upper left corner and select the desired region and project.</li><li id="eip_0003__en-us_topic_0233468221_li548302634415">Click <span><img id="eip_0003__image81906989185433" src="en-us_image_0000001649841616.png"></span> in the upper left corner, and choose <span id="eip_0003__en-us_topic_0233468221_en-us_topic_0118498850_text47511547154412"><strong id="eip_0003__b18444724888">Network</strong></span><span id="eip_0003__en-us_topic_0233468221_en-us_topic_0118498850_text1275116474447"></span> > <span id="eip_0003__en-us_topic_0233468221_en-us_topic_0118498850_text1075194744412"></span><span id="eip_0003__en-us_topic_0233468221_en-us_topic_0118498850_text1075114473445"><strong id="eip_0003__b55411101994">Elastic IP</strong></span>.</li><li id="eip_0003__li156661385413">On the <span id="eip_0003__text10263182613414"></span><span id="eip_0003__text1626442614111">EIP</span> list page, click <strong id="eip_0003__b14264182624117">Export</strong> in the upper left corner.<ul id="eip_0003__ul1419820291253"><li id="eip_0003__li519812291054"><strong id="eip_0003__b2569185017423">Export selected data to an XLSX file</strong>: Select one or more <span id="eip_0003__text1525394843317"></span><span id="eip_0003__text825318487333">EIP</span>s and export the information about all the selected EIPs.</li><li id="eip_0003__li2985846753"><strong id="eip_0003__b1328018225432">Export all data to an XLSX file</strong>: Export information about all the <span id="eip_0003__text796655416332"></span><span id="eip_0003__text10966195443320">EIP</span>s in the current region.</li></ul>
|
||||
<p id="eip_0003__p067512107414">The system automatically exports the information about the EIPs as an Excel file to a local directory.</p>
|
||||
</li></ol>
|
||||
</div>
|
||||
</div>
|
||||
|
Before Width: | Height: | Size: 377 B |
Before Width: | Height: | Size: 22 KiB |
Before Width: | Height: | Size: 12 KiB |
Before Width: | Height: | Size: 16 KiB |
Before Width: | Height: | Size: 22 KiB |
Before Width: | Height: | Size: 14 KiB |
Before Width: | Height: | Size: 22 KiB |
Before Width: | Height: | Size: 359 B |
Before Width: | Height: | Size: 32 KiB |
Before Width: | Height: | Size: 14 KiB |
Before Width: | Height: | Size: 130 KiB |
Before Width: | Height: | Size: 24 KiB |
Before Width: | Height: | Size: 22 KiB |
Before Width: | Height: | Size: 17 KiB |
Before Width: | Height: | Size: 28 KiB |
Before Width: | Height: | Size: 13 KiB |
Before Width: | Height: | Size: 26 KiB |
Before Width: | Height: | Size: 27 KiB |
Before Width: | Height: | Size: 40 KiB |
Before Width: | Height: | Size: 17 KiB |
Before Width: | Height: | Size: 20 KiB |
Before Width: | Height: | Size: 24 KiB |
Before Width: | Height: | Size: 22 KiB |
Before Width: | Height: | Size: 12 KiB |
Before Width: | Height: | Size: 145 KiB |
BIN
docs/vpc/umn/en-us_image_0000002027767176.png
Normal file
After Width: | Height: | Size: 1004 B |
BIN
docs/vpc/umn/en-us_image_0000002027925628.png
Normal file
After Width: | Height: | Size: 128 B |
BIN
docs/vpc/umn/en-us_image_0000002027982768.png
Normal file
After Width: | Height: | Size: 23 KiB |
BIN
docs/vpc/umn/en-us_image_0000002028007756.png
Normal file
After Width: | Height: | Size: 128 B |
BIN
docs/vpc/umn/en-us_image_0000002028141064.png
Normal file
After Width: | Height: | Size: 1004 B |
BIN
docs/vpc/umn/en-us_image_0000002028956040.png
Normal file
After Width: | Height: | Size: 50 KiB |
BIN
docs/vpc/umn/en-us_image_0000002029014640.png
Normal file
After Width: | Height: | Size: 24 KiB |
BIN
docs/vpc/umn/en-us_image_0000002029083886.png
Normal file
After Width: | Height: | Size: 29 KiB |
BIN
docs/vpc/umn/en-us_image_0000002029088858.png
Normal file
After Width: | Height: | Size: 32 KiB |
BIN
docs/vpc/umn/en-us_image_0000002029103832.png
Normal file
After Width: | Height: | Size: 27 KiB |
BIN
docs/vpc/umn/en-us_image_0000002029118468.png
Normal file
After Width: | Height: | Size: 9.2 KiB |
BIN
docs/vpc/umn/en-us_image_0000002029168046.png
Normal file
After Width: | Height: | Size: 30 KiB |
BIN
docs/vpc/umn/en-us_image_0000002029182980.png
Normal file
After Width: | Height: | Size: 49 KiB |
BIN
docs/vpc/umn/en-us_image_0000002033444204.png
Normal file
After Width: | Height: | Size: 29 KiB |
BIN
docs/vpc/umn/en-us_image_0000002048296164.png
Normal file
After Width: | Height: | Size: 414 B |