Within your VPC, there are two ways to grant and allow network traffic: Security Groups (SG) and Access Control Lists (ACL). We prefer to use the SGs because they are stateless and their use results in fewer rules which makes understanding our security posture easier.
The issue we've encountered is you have a limit of five remote rules per security group which means we have to be selective when using SG and use ACLs for some rules. This forces us to be inconsistent with our security policy and increases confusion.
Please increase the amount of remote rules per security group to something closer to fifty or more to provide us the ability to implement the more reliable security that we'd prefer.
| Idea priority | High |
| Needed By | Yesterday (Let's go already!) |
By clicking the "Post Comment" or "Submit Idea" button, you are agreeing to the IBM Ideas Portal Terms of Use.
Do not place IBM confidential, company confidential, or personal information into any field.