Managing a Network ACL
An AWS Network Access Control List (NACL) works as a firewall at the VPC level for controlling incoming and outgoing requests from one or more subnets associated with that VPC. It is used in conjunction with the Security Group (SG) in controlling traffic to the AWS. When we create a VPC, a default NACL is created that is open to every IP and port. The subnet is associated with the default NACL created during its creation. We can create a custom NACL and associate it with a subnet, thus replacing the default NACL.
Getting ready
We need an AWS account and a user with proper permissions to create a security group. We also need to configure the AWS CLI in our local machine. We also need a VPC creation in the region where we are going to create the components. We have already created those in Chapter 1, Getting Started with AWS Networking Components.
How to do it...
- Log in to your AWS account and open the
VPC Dashboard
.

VPC Dashboard
- Click on
Network ACLs
from the left menu...