Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

VPC, subnetのセキュリティの見直しに伴うアーキテクチャ再設計 #2

Open
murawakimitsuhiro opened this issue May 8, 2020 · 0 comments

Comments

@murawakimitsuhiro
Copy link

直したい部分

  1. RDSへの外部からのアクセスを禁じる
  2. ECSのポート開放部分の見直し
  3. ALBの配置場所の再検討

修正アイデア (雑案)

  1. ALB以外はpublicなsubnetの中にはおかないようにする
  2. サービス間の連携を全てIAMでしか行わないようにする(これはサーバの実装にも影響するため結構面倒)
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant