From the course: AWS Certified Security - Specialty (SCS-C03) Cert Prep
Unlock this course with a free trial
Join today to access over 25,300 courses taught by industry experts.
Security Groups and Network ACLs - Amazon Web Services (AWS) Tutorial
From the course: AWS Certified Security - Specialty (SCS-C03) Cert Prep
Security Groups and Network ACLs
In this lesson, I'm going to cover security groups and network ACLs. These are both types of firewall that we can use on AWS to protect our EC2 instances and databases and other services that sit inside an Amazon VPC. Now, firstly, I need to cover the difference between what we call a stateful and a stateless firewall. So here we have a web server on the left hand side and a client on the right hand side who wants to access that web service. And you can see the IP addresses associated with these two different computers. So what happens is because it's a web server, it's going to listen on port 80. That's the well known port for the unsecured version of HTTP. So the connection goes over at port 80. And there's a source port. Now the source port is dynamically allocated by the operating system of the client. And it's a high numbered port. So it's not one of the well known ports, which sits somewhere between one and 1024. It's one of the high numbered ports is dynamically assigned. So we…
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.
Contents
-
-
-
-
-
-
-
(Locked)
Section 6 - Introduction34s
-
(Locked)
Secure VPC Design10m 14s
-
(Locked)
[HOL] Create a Custom VPC13m 24s
-
(Locked)
Stateful and Stateless Firewalls5m 48s
-
(Locked)
Security Groups and Network ACLs4m 47s
-
(Locked)
[HOL] Using Security Groups and NACLs10m 28s
-
(Locked)
VPC Peering7m 33s
-
(Locked)
[HOL] Configure VPC Peering9m 57s
-
(Locked)
VPC Endpoints4m 9s
-
(Locked)
[HOL] Create VPC Endpoint9m 27s
-
(Locked)
AWS Site-to-Site VPN4m 36s
-
(Locked)
Securing AWS Direct Connect5m 46s
-
(Locked)
[HOL] VPC Flow Logs6m 3s
-
(Locked)
Accessing Services – Access Keys and IAM Roles5m 35s
-
(Locked)
[HOL] Access Keys and IAM Roles13m 44s
-
(Locked)
Managing Amazon EC2 Security4m 30s
-
(Locked)
[HOL] Connect to EC2 with Instance Connect4m 47s
-
(Locked)
[HOL] Connect to EC2 with Session Manager6m 11s
-
(Locked)
AWS Services in Amazon VPC5m 18s
-
(Locked)
Automating Infrastructure as Code3m 22s
-
(Locked)
[HOL] Create Amazon VPC with CloudFormation11m 26s
-
(Locked)
Compliance with AWS Config3m 48s
-
(Locked)
[HOL] SSM Automation and Config Rules6m 29s
-
(Locked)
AWS Transit Gateway10m 16s
-
(Locked)
VPC Sharing2m 20s
-
(Locked)
AWS Service Catalog4m 10s
-
(Locked)
Network Reachability and Security Tools12m 36s
-
(Locked)
Network Access Analyzer5m 27s
-
(Locked)
[HOL] Reviewing Findings with Network Access Analyzer11m 17s
-
(Locked)
Automating Security in CI/CD4m 19s
-
(Locked)
AWS Systems Manager7m 5s
-
(Locked)
Systems Manager Parameter Store2m 55s
-
(Locked)
Infrastructure Security Exam Cram7m 50s
-
(Locked)
-
-
-
-
-