How can we add NLB's EIP for shield advanced protection for AWS auto-assigned IPs

0

Hello, Internet facing NLB IPs doesn't come up under resources to protect even if we choose EIPs in Shield UI. Is it true that in order to enable shield advanced for NLBs, it had to be assigned to customer created EIPs as opposed to Amazon created IPs?

Thanks,

1 Antwort
0
Akzeptierte Antwort

Is it true that in order to enable shield advanced for NLBs, it had to be assigned to customer created EIPs as opposed to Amazon created IPs?

Correct - Shield Advanced will only list the rsources if the NLB has been setup via a static EIP (instead of just subnets - which will assign a random public IP). So the correct way would be to Allocate a new address, then spin-up an ELB with EIP instead of subnets. Once done, it'll show up in Shield Advance to configure resource protection.

AWS
EXPERTE
beantwortet vor 5 Jahren

Du bist nicht angemeldet. Anmelden um eine Antwort zu veröffentlichen.

Eine gute Antwort beantwortet die Frage klar, gibt konstruktives Feedback und fördert die berufliche Weiterentwicklung des Fragenstellers.

Richtlinien für die Beantwortung von Fragen