Back to search

Security group vs NACL in AWS

Security groups are stateful instance-level firewalls, while NACLs are stateless subnet-level filters.

DevOps Medium Theory

Security group vs NACL in AWS

Security groups are stateful instance-level firewalls, while NACLs are stateless subnet-level filters.

  • Security groups attach to resources
  • NACLs attach to subnets
  • Stateful vs stateless is the big memory hook

Security group vs NACL in AWS