Updated on 2024-10-24 GMT+08:00

Changing a Security Group

Scenarios

This section describes how to change the security group of a primary DB instance or read replica. For primary/standby DB instances, changing the security group of the primary DB instance will cause the security group of the standby DB instance to be changed as well.

Precautions

You can add or modify rules for the security group associated with your RDS instance, but you cannot disassociate or delete the security group.

Procedure

  1. Log in to the management console.
  2. Click in the upper left corner and select a region.
  3. Click in the upper left corner of the page and choose Databases > Relational Database Service.
  4. On the Instances page, click the target primary DB instance or read replica.
  5. On the Overview page, click Configure under Security Group and select a new security group.

    • To submit the change, click .
    • To cancel the change, click .

  6. Changing the security group takes 1 to 3 minutes. Click in the upper right corner on the Overview page to view the results.

Managing Security Groups

  1. Log in to the management console.
  2. Click in the upper left corner and select a region.
  3. Click in the upper left corner of the page and choose Databases > Relational Database Service.
  4. On the Instances page, click the DB instance or read replica.
  5. On the Overview page, click Manage under Security Group.

    You can select multiple security groups at a time. The security group rules will be applied based on the following sequence: the first security group associated will take precedence over those associated later, then the rule with the highest priority in that security group will be applied first.

    To create a new security group, click Create Security Group.

    Using multiple security groups may deteriorate the network performance. You are suggested to select no more than five security groups.

    Figure 1 Managing security groups

  6. Click Yes to submit the modification.