Improve clarity of aws_security_group 'protocol' usage

This commit is contained in:
Daniel Bryant 2017-01-05 11:31:51 +00:00
parent 6cd358e115
commit 19b1a8427c
1 changed files with 2 additions and 2 deletions

View File

@ -87,7 +87,7 @@ The `ingress` block supports:
* `cidr_blocks` - (Optional) List of CIDR blocks. * `cidr_blocks` - (Optional) List of CIDR blocks.
* `from_port` - (Required) The start port (or ICMP type number if protocol is "icmp") * `from_port` - (Required) The start port (or ICMP type number if protocol is "icmp")
* `protocol` - (Required) The protocol. If you select a protocol of * `protocol` - (Required) The protocol. If you select a protocol of
"-1" (equivalent to `"all"`), you must specify a "from_port" and "to_port" equal to 0. If not icmp, tcp, udp, or all use the [protocol number](https://www.iana.org/assignments/protocol-numbers/protocol-numbers.xhtml) "-1" (semantically equivalent to `"all"`, which is not a valid value here), you must specify a "from_port" and "to_port" equal to 0. If not icmp, tcp, udp, or "-1" use the [protocol number](https://www.iana.org/assignments/protocol-numbers/protocol-numbers.xhtml)
* `security_groups` - (Optional) List of security group Group Names if using * `security_groups` - (Optional) List of security group Group Names if using
EC2-Classic, or Group IDs if using a VPC. EC2-Classic, or Group IDs if using a VPC.
* `self` - (Optional) If true, the security group itself will be added as * `self` - (Optional) If true, the security group itself will be added as
@ -100,7 +100,7 @@ The `egress` block supports:
* `prefix_list_ids` - (Optional) List of prefix list IDs (for allowing access to VPC endpoints) * `prefix_list_ids` - (Optional) List of prefix list IDs (for allowing access to VPC endpoints)
* `from_port` - (Required) The start port (or ICMP type number if protocol is "icmp") * `from_port` - (Required) The start port (or ICMP type number if protocol is "icmp")
* `protocol` - (Required) The protocol. If you select a protocol of * `protocol` - (Required) The protocol. If you select a protocol of
"-1", you must specify a "from_port" and "to_port" equal to 0. If not icmp, tcp, udp, or all use the [protocol number](https://www.iana.org/assignments/protocol-numbers/protocol-numbers.xhtml) "-1" (semantically equivalent to `"all"`, which is not a valid value here), you must specify a "from_port" and "to_port" equal to 0. If not icmp, tcp, udp, or "-1" use the [protocol number](https://www.iana.org/assignments/protocol-numbers/protocol-numbers.xhtml)
* `security_groups` - (Optional) List of security group Group Names if using * `security_groups` - (Optional) List of security group Group Names if using
EC2-Classic, or Group IDs if using a VPC. EC2-Classic, or Group IDs if using a VPC.
* `self` - (Optional) If true, the security group itself will be added as * `self` - (Optional) If true, the security group itself will be added as