Compute

Security Group

English

Overview

An instance-level virtual firewall applied to EC2 and similar resources.

Details

It's whitelist-based, denying all inbound traffic by default, and behaves statefully (return traffic is automatically allowed). Understanding how it differs from a network ACL is important.

More AWS terms