1 Answer
- Newest
- Most votes
- Most comments
0
The authorization rule order is significant and once a network match is found it stops processing additional rules.
So authorization rule for 10.1.1.0/24 must appear higher in the list than 10.1.0.0/16.
Also for Client B that should have access to the entire 10.1.0.0/16 subnet those users will need to be members of both AD Group A and AD Group B in order for them to get access to 10.1.1.0/24 and the rest of the /16 subnet.
answered 5 years ago
Relevant content
- Accepted Answerasked a year ago
- Accepted Answerasked 2 months ago
- AWS OFFICIALUpdated a year ago
- AWS OFFICIALUpdated a year ago
- AWS OFFICIALUpdated 6 months ago