Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

disallow ssh from the outside, except for to tower server #30

Open
mglantz opened this issue Aug 27, 2018 · 3 comments
Open

disallow ssh from the outside, except for to tower server #30

mglantz opened this issue Aug 27, 2018 · 3 comments
Labels
backlog Will be done whenever someone has time enhancement New feature or request

Comments

@mglantz
Copy link
Collaborator

mglantz commented Aug 27, 2018

No description provided.

@mglantz mglantz added the enhancement New feature or request label Aug 29, 2018
@teemu-u
Copy link
Contributor

teemu-u commented Aug 31, 2018

Done e4d5889

@teemu-u teemu-u closed this as completed Aug 31, 2018
@mglantz mglantz reopened this Aug 31, 2018
@mglantz
Copy link
Collaborator Author

mglantz commented Aug 31, 2018

As it turned out, Amazon does not allow public IP addresses as sources, this complicates the lab instructions. We'll have to give it some thought about how to solve this without complicating the lab instructions too much.
https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/using-network-security.html
"When you specify a security group as the source or destination for a rule, the rule affects all instances associated with the security group. Incoming traffic is allowed based on the private IP addresses of the instances that are associated with the source security group (and not the public IP or Elastic IP addresses). "

@teemu-u
Copy link
Contributor

teemu-u commented Aug 31, 2018

Needs some refactoring on the lab environment and instructions

@teemu-u teemu-u added the backlog Will be done whenever someone has time label Aug 31, 2018
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
backlog Will be done whenever someone has time enhancement New feature or request
Projects
None yet
Development

No branches or pull requests

2 participants