Enabling or Disabling One or More Security Group Rules
Scenarios
- After a security group rule is disabled, it will not work. If all security group rules are disabled, traffic will be denied to reach or leave the instances in the security group. Disabling all rules may interrupt network traffic.
- After a security group rule is enabled, it controls the network traffic from and to the instances in the security group.
To enable or disable a security group rule, see Enabling or Disabling a Security Group Rule.
- If there are a small number of rules to be enabled or disabled, you can select these rules in the security group rule list on the console by referring to Enabling or Disabling Multiple Security Group Rules Directly on the Console.
- If there are a large number of rules to be enabled or disabled, you can export the rule list to a local Excel file, only keep the rules you want to enable or disable, and import the file to the console. The system then selects the rules to be processed based on the imported file. For details, see Enabling or Disabling Multiple Security Group Rules Using an Excel File.
Enabling or Disabling a Security Group Rule
- Log in to the management console.
- Click in the upper left corner and select the desired region and project.
- Click in the upper left corner and choose Networking > Virtual Private Cloud.
The Virtual Private Cloud page is displayed.
- In the navigation pane on the left, choose Access Control > Security Groups.
The security group list is displayed.
- Locate the target security group and click its name.
- Click the Inbound Rules or Outbound Rules tab as required.
The security group rule list is displayed.
- In the security group rule list:
- Enable a security group rule.
- Locate the target security group rule, click More in the Operation column, and select Enable.
A confirmation dialog box is displayed.
- Click OK.
- Locate the target security group rule, click More in the Operation column, and select Enable.
- Disable a security group rule.
- Locate the target security group rule, click More in the Operation column, and select Disable.
A confirmation dialog box is displayed.
- Click OK.
- Locate the target security group rule, click More in the Operation column, and select Disable.
- Enable a security group rule.
Enabling or Disabling Multiple Security Group Rules Directly on the Console
- Log in to the management console.
- Click in the upper left corner and select the desired region and project.
- Click in the upper left corner and choose Networking > Virtual Private Cloud.
The Virtual Private Cloud page is displayed.
- In the navigation pane on the left, choose Access Control > Security Groups.
The security group list is displayed.
- Locate the target security group and click its name.
- Click the Inbound Rules or Outbound Rules tab as required.
The security group rule list is displayed.
- In the security group rule list, select the security group rules you want to enable or disable.
- In the rule list:
- Enable security group rules.
- Above the security group rule list, choose More > Enable.
A confirmation dialog box is displayed.
- Click OK.
- Above the security group rule list, choose More > Enable.
- Disable security group rules.
- Above the security group rule list, choose More > Disable.
A confirmation dialog box is displayed.
- Click OK.
- Above the security group rule list, choose More > Disable.
- Enable security group rules.
Enabling or Disabling Multiple Security Group Rules Using an Excel File
- Log in to the management console.
- Click in the upper left corner and select the desired region and project.
- Click in the upper left corner and choose Networking > Virtual Private Cloud.
The Virtual Private Cloud page is displayed.
- In the navigation pane on the left, choose Access Control > Security Groups.
The security group list is displayed.
- Locate the target security group and click its name.
- Click the Inbound Rules or Outbound Rules tab as required.
The security group rule list is displayed.
- In the upper left corner above the security group rule list, click Batch Operations.
The Batch Operations dialog box is displayed.
- Select either of the following methods:
- Method 1: Click Download Template to download the Excel file to your local PC and fill in the security group rules to be enabled or disabled in the file.
- Method 2: Export the existing rules to a local Excel file, filter the target rules and keep them as they are, and save the file.
After the Excel file is ready, take step 9. The system then automatically selects the target rules based on the imported file.
- In the Batch Operations dialog box, click Select File.
The system starts to match the rules in the Excel file against existing security group rules based on the priority, action, type, protocol & port, source, and destination.
- If a rule in the Excel file matches an existing rule, Verified is displayed in the Result column. Only the matched rules can be enabled or disabled.
- If a rule fails to be matched, the causes will be displayed in the Result column. The possible causes are as follows:
- There is no such rule in this security group.
- Inconsistent rule direction. For example, you perform the operation on outbound rules on the Inbound Rules tab, or the other way around.
- Duplicate rules in the Excel file. The system automatically filters out the duplicate rules.
- Confirm the rules and click OK.
The security group rule list page is displayed and the target rules are selected automatically.
- In the rule list:
- Enable security group rules.
- Above the security group rule list, choose More > Enable.
A confirmation dialog box is displayed.
- Click OK.
- Above the security group rule list, choose More > Enable.
- Disable security group rules.
- Above the security group rule list, choose More > Disable.
A confirmation dialog box is displayed.
- Click OK.
- Above the security group rule list, choose More > Disable.
- Enable security group rules.
Feedback
Was this page helpful?
Provide feedbackThank you very much for your feedback. We will continue working to improve the documentation.See the reply and handling status in My Cloud VOC.
For any further questions, feel free to contact us through the chatbot.
Chatbot