Create a compute security group profile
A compute security group profile applies specified security rules to newly-provisioned resources. You map a compute security group profile to a cloud account, a datacenter, a Compute Security Group template, and security rules for the template.
Avant de commencer
You must have a cloud account with datacenters. You must run Discovery on the service accounts to populate the datacenters.
Role required: sn_cmp.cloud_admin
Procédure
- In the Cloud Admin Portal, navigate to Manage > Resource Profiles.
- In the Profiles list, select Compute Security Group Profile and then click New.
-
Enter a unique and descriptive Name and Description for
the profile and then click Submit.
The profile is created.
-
Map the profile to a template.
- In the list, click the profile that you created.
-
In the Compute Security Group Profile Mappings related list, click New, fill in the form, and then click Submit.
Field Description Cloud Account Select a cloud account for the profile. Location Select the datacenter that belongs to the cloud account. Compute Security Group Template [cmdb_ci_security_grp_template]
Select or create a template that the profile should be mapped to. To create a new template, click the list icon and then click New. Enter a name and a template ID and click Submit.
Click the reference icon (
) to view the details of the template.
-
Add rules to the template.
You can create more than one rule per template.
- In the Security Group Profile Mappings related list, under the Compute Security Group Template heading, click the template name.
-
In the Compute Security Group Rule Template related list, click New, fill in the form, and then click Submit.
Field Description CIDR Range Specify a CIDR range. For example, 10.0.0.0/24. IP Protocol Select an IP protocol. In Azure, the protocols supported are TDP and UDP. ICMP is not supported. From Port Specify the source port number. Is Outbound Enter 0 for inbound and 1 for outbound. Name Specify a name for the rule. Network Type Select the type of network. To Port Specify the destination port number.