<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Security Groups &#8211; Most Underappreciated Feature of Amazon EC2</title>
	<atom:link href="http://somic.org/2009/09/21/security-groups-most-underappreciated-feature-of-amazon-ec2/feed/" rel="self" type="application/rss+xml" />
	<link>http://somic.org/2009/09/21/security-groups-most-underappreciated-feature-of-amazon-ec2/</link>
	<description>Dmitriy Samovskiy's Blog</description>
	<lastBuildDate>Wed, 18 Aug 2010 22:05:16 -0500</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.4</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Dmitriy</title>
		<link>http://somic.org/2009/09/21/security-groups-most-underappreciated-feature-of-amazon-ec2/comment-page-1/#comment-690</link>
		<dc:creator>Dmitriy</dc:creator>
		<pubDate>Thu, 24 Sep 2009 00:08:59 +0000</pubDate>
		<guid isPermaLink="false">http://somic.org/?p=826#comment-690</guid>
		<description>Thanks Yan, I totally forgot. I even modified my ec2kill to only kill instances with my security group so that I couldn&#039;t kill others&#039; instances by accident (at work we share a set of credentials among several people for development purposes).</description>
		<content:encoded><![CDATA[<p>Thanks Yan, I totally forgot. I even modified my ec2kill to only kill instances with my security group so that I couldn&#8217;t kill others&#8217; instances by accident (at work we share a set of credentials among several people for development purposes).</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Yan</title>
		<link>http://somic.org/2009/09/21/security-groups-most-underappreciated-feature-of-amazon-ec2/comment-page-1/#comment-689</link>
		<dc:creator>Yan</dc:creator>
		<pubDate>Wed, 23 Sep 2009 20:38:48 +0000</pubDate>
		<guid isPermaLink="false">http://somic.org/?p=826#comment-689</guid>
		<description>You forgot to mention your inventive usage of SG&#039;s as impromptu tags. When running many images, and sharing an EC2 account with other coworkers, it may be advantageous to &#039;tag&#039; your instance with a SG such as started-by-bob so that everyone knows by looking at an instance&#039;s SG who launched it, and that it should not be brought down :)</description>
		<content:encoded><![CDATA[<p>You forgot to mention your inventive usage of SG&#8217;s as impromptu tags. When running many images, and sharing an EC2 account with other coworkers, it may be advantageous to &#8216;tag&#8217; your instance with a SG such as started-by-bob so that everyone knows by looking at an instance&#8217;s SG who launched it, and that it should not be brought down <img src='http://somic.org/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dmitriy</title>
		<link>http://somic.org/2009/09/21/security-groups-most-underappreciated-feature-of-amazon-ec2/comment-page-1/#comment-688</link>
		<dc:creator>Dmitriy</dc:creator>
		<pubDate>Wed, 23 Sep 2009 15:25:13 +0000</pubDate>
		<guid isPermaLink="false">http://somic.org/?p=826#comment-688</guid>
		<description>Thanks.

Re performance impact - absolutely should be explored. I personally don&#039;t think it would be too noticeable in practice, but exact measurements won&#039;t hurt. 

Re shortfalls - I agree it&#039;s a tradeoff. I also am curious how other IaaS clouds will make this tradeoff - will they choose to deliver more firewall features than EC2 or less, what the consequences of this could be and whether this would lead to a features race between clouds.

BTW, many kudos for A6 stuff you&#039;re doing - hugely important methinks.

- Dmitriy</description>
		<content:encoded><![CDATA[<p>Thanks.</p>
<p>Re performance impact &#8211; absolutely should be explored. I personally don&#8217;t think it would be too noticeable in practice, but exact measurements won&#8217;t hurt. </p>
<p>Re shortfalls &#8211; I agree it&#8217;s a tradeoff. I also am curious how other IaaS clouds will make this tradeoff &#8211; will they choose to deliver more firewall features than EC2 or less, what the consequences of this could be and whether this would lead to a features race between clouds.</p>
<p>BTW, many kudos for A6 stuff you&#8217;re doing &#8211; hugely important methinks.</p>
<p>- Dmitriy</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Christofer Hoff</title>
		<link>http://somic.org/2009/09/21/security-groups-most-underappreciated-feature-of-amazon-ec2/comment-page-1/#comment-687</link>
		<dc:creator>Christofer Hoff</dc:creator>
		<pubDate>Tue, 22 Sep 2009 20:24:45 +0000</pubDate>
		<guid isPermaLink="false">http://somic.org/?p=826#comment-687</guid>
		<description>Good write-up, Dmitriy.

The shortfalls you&#039;ve indicated demonstrate the tradeoff between a mass-marketed &quot;good enough&quot; and socialist-security approach and security.

The performance impact of some of the things on your wishlist are an interesting issue to further explore...

Thanks,

/Hoff</description>
		<content:encoded><![CDATA[<p>Good write-up, Dmitriy.</p>
<p>The shortfalls you&#8217;ve indicated demonstrate the tradeoff between a mass-marketed &#8220;good enough&#8221; and socialist-security approach and security.</p>
<p>The performance impact of some of the things on your wishlist are an interesting issue to further explore&#8230;</p>
<p>Thanks,</p>
<p>/Hoff</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Shlomo</title>
		<link>http://somic.org/2009/09/21/security-groups-most-underappreciated-feature-of-amazon-ec2/comment-page-1/#comment-686</link>
		<dc:creator>Shlomo</dc:creator>
		<pubDate>Tue, 22 Sep 2009 16:53:30 +0000</pubDate>
		<guid isPermaLink="false">http://somic.org/?p=826#comment-686</guid>
		<description>Thanks for this nice writeup of security groups.

Another advanced usage of security groups: tagging instances. Here&#039;s my article on that:
http://clouddevelopertips.blogspot.com/2009/06/tagging-ec2-instances-using-security_30.html</description>
		<content:encoded><![CDATA[<p>Thanks for this nice writeup of security groups.</p>
<p>Another advanced usage of security groups: tagging instances. Here&#8217;s my article on that:<br />
<a href="http://clouddevelopertips.blogspot.com/2009/06/tagging-ec2-instances-using-security_30.html" rel="nofollow">http://clouddevelopertips.blogspot.com/2009/06/tagging-ec2-instances-using-security_30.html</a></p>
]]></content:encoded>
	</item>
</channel>
</rss>
