Go to main content

Oracle® Advanced Support Gateway Installation Guide

Exit Print View

Updated: March 2024
 
 

Update the Default Security List for the VCN

Follow this procedure to update the default security list for the VCN to allow necessary traffic.

Earlier you set up the subnet to use the VCN's default security list. Now you add security list rules that allow the types of connections that the instances in the VCN will need.


Note -  Some customers may wish to explicitly allow only the protocols/ports listed in Oracle Advanced Support Gateway Security Guide.

To update the default security list for the VCN, perform the following steps in the your new compartment:

  1. While viewing the VCN, under Resources, click Security Lists.

    Note -  For more information, refer to the relevant OCI documentation here.
  2. Click the default security list to view its details. By default, you land on the Ingress Rules page.
  3. Click Add Ingress Rule.
  4. To enable inbound connections for HTTPS (TCP port 443), enter the following:

    Stateless: Unselected (this is a stateful rule.)

    Source Type: CIDR.

    Source CIDR: 0.0.0.0/0

    IP Protocol: TCP

    Source Port Range: All

    Destination Port Range: 443

  5. Click Add Ingress Rule.
  6. Use the above steps to add a stateful ingress rule for any subnets with customer assets for the protocols/ports listed in Oracle Advanced Support Gateway Security Guide.
  7. Add a stateful ingress rule for Oracle's JumpGate Host for TCP Ports 22 and 443.