1 Answers
Hi Gabor,
You are absolutely correct that there is no need to add ephemerals as an outbound rule on security groups with TCP Port 80 inbound. The stateful nature of SGs will let the ephemeral ports out no problem. You don’t even need any outbound rule at all.
I’m going to edit this out so others won’t get confused. I originally had the explicit ephemerals on the NACL but changed it to SGs where…it doesn’t apply.
Thanks!
–Scott
Hi Scott, thanks for the fast response. Anyway, I like the training pretty much, motivating, well-structured and gives the right perspective.
Thanks Gabor!