community icon indicating copy to clipboard operation
community copied to clipboard

Support SecurityGroup, SecurityGroupRule, and SecurityGroupRuleAssociation deployments

Open max-lobur opened this issue 5 years ago • 3 comments

Is your feature request related to a problem? With security groups for pods release, groups, rules, and associations are going to become a much more frequently created resource.

Describe the solution you'd like Prerequisites:

  1. I have an existing RDS DB and know its SG ID.

Steps:

  1. I create an SG for a pod
  2. I create a rule to allow access from SG of a pod, SG ID is taken in the previous step
  3. I associate the new rule with the existing RDS DB SG, Rule ID is taken in the previous step.

Result:

  1. A pod is provisioned along with its own network rules.

Describe alternatives you've considered Going to terraform all the security groups and pass the IDs to k8s.

max-lobur avatar Sep 11 '20 11:09 max-lobur

@brycahta want to take ownership of this one with your buildout of https://github.com/aws-controllers-k8s/ec2-controller?

jaypipes avatar Aug 27 '21 14:08 jaypipes

/lifecycle frozen /cc @bwagner5 @brycahta

a-hilaly avatar Nov 29 '21 10:11 a-hilaly

@jaypipes yes

brycahta avatar Jun 16 '22 16:06 brycahta