February 2020
Intermediate to advanced
440 pages
13h 51m
English
NACLs allow us to define inbound and outbound rules for the subnets of our VPC. We can explicitly allow or deny traffic through a port, or a range of ports. The default NACL that was created by AWS allows all inbound and outbound traffic. However, by default, a custom NACL denies all inbound and outbound traffic.
First, we created a new NACL. Then, we associated our public subnet with that NACL and verified that we cannot SSH from our local machine. A new NACL denies inbound and outbound traffic by default. To allow SSH, we added an inbound rule for SSH in our NACL and an outbound rule to allow the ephemeral port range of 1024 - 65535.
Read now
Unlock full access