Skip to content

Review networking setup for security groups, VPC, endpoints #6116

@patchwork01

Description

@patchwork01

User Story

As a user deploying Sleeper, I want minimally permissive settings for networking, so that a Sleeper instance is secure by default.

Description / Background

We'd like to investigate changes we could make to our configuration of security groups and VPC endpoints.

Technical Notes / Implementation Details

We currently add VPC endpoints in our "environment" CDK app. We could see what the benefits might be for adding VPC endpoints for further AWS services, e.g. ECR. We'd like to know how this relates to security groups.

We can look at the potential benefits of putting our lambdas in the same VPC as the rest of the instance, and configuring security groups for them.

Issues:

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions