amazon-vpc-cni-k8s icon indicating copy to clipboard operation
amazon-vpc-cni-k8s copied to clipboard

Allow setting of EC2 Security group connection tracking configurable idle timeouts in AWS VPC CNI

Open youwalther65 opened this issue 1 year ago • 10 comments

What would you like to be added: AWS just released EC2 Security group connection tracking adds support for configurable idle timeouts.

Modifying these parameters requires EC2 API calls. It would be great if AWS VPC CNI can automatically implement custom configuration of these idle timeouts for newly provisioned ENI, it manages.

Why is this needed: Avoid conntrack (connection tracking) issues leading to paket loss etc.

youwalther65 avatar Nov 22 '23 13:11 youwalther65