Hi, When deploying with <https://docs.flyte.org/en...
# ask-the-community
a
Hi, When deploying with https://docs.flyte.org/en/latest/deployment/aws/opta.html#deployment-aws-opta, what's the canonical way for setting up an allowlist (list of permitted IPs/networks) for the internet-facing service, so the service isn't open for anyone on the internet?
k
cc @JD Palomino can you help here?
j
more info
a
Basically I would like to set up a default deny rule on the load balancer, so only a given set of IP addresses/CIDRs should reach the service.
k
@JD Palomino - @Attila Nagy wants to limit access to certain cidrs only. This can be done by modifying the security group for LB, to restrict the ranges
a
The opta deployment creates a network load balancer (no security groups, only limited VPC ACLs). Can this be configured in the YAML files?
j
I can look into this yes
👍 1
162 Views