Find the Best Cosmetic Hospitals

Explore trusted cosmetic hospitals and make a confident choice for your transformation.

“Invest in yourself — your confidence is always worth it.”

Explore Cosmetic Hospitals

Start your journey today — compare options in one place.

EKS Tutorials: Types of Security Groups Created or Used in an EKS Cluster

When you set up an Amazon EKS (Elastic Kubernetes Service) cluster, AWS automatically creates and/or requires several security groups to manage access to the control plane, worker nodes, and other associated components.

Here’s a complete breakdown of the types of Security Groups involved during an EKS cluster setup:


🔐 Types of Security Groups Created or Used in an EKS Cluster

1. EKS Control Plane Security Group (Optional/Custom)

🔹 NameCustom
EKS Control Plane Security Group✅ (You define it in the cluster config)
  • Purpose: Controls communication from the control plane to worker nodes (EC2/EKS-managed).
  • Traffic direction: Egress traffic from control plane → worker nodes (TCP 443 by default).
  • When it’s defined: You specify this group when creating a cluster using the vpcConfig.securityGroupIds.

✅ This group is not created automatically – it’s the one you pass in during setup.


2. EKS Managed Node Group Security Group (Auto-created by EKS)

🔹 NameAuto-created
Node Security Group (Worker Nodes)✅ Yes
  • Created when: You launch a managed node group.
  • Purpose: Controls traffic between nodes and from the nodes to the control plane.
  • Includes ingress rules for:
    • Node-to-node communication
    • Control plane-to-node communication

⚠️ This security group is automatically associated with your EC2 worker nodes.


3. Cluster Shared Node Security Group (Created Automatically)

🔹 NameAuto-created
Cluster Shared Node Security Group✅ Yes
  • Purpose: Used for:
    • Worker node communication (pods across nodes)
    • Internal services
  • Managed by EKS: You cannot delete this manually.
  • Shared across multiple node groups in the cluster.

This SG ensures pods and services across nodes in the cluster can communicate securely.


4. Fargate Pod Execution Role SG (if using Fargate)

🔹 NameUser-defined
Fargate Pod ENI Security Group✅ Yes (you must specify)
  • If you’re using Fargate profiles, you need to define a security group that controls the network interfaces attached to the Fargate pods.
  • This group handles pod-level network access when no EC2 nodes are used.

5. Load Balancer Security Group (Optional)

🔹 NameCustom or auto
Load Balancer SG✅ Yes (by user or created by controller)
  • For services of type LoadBalancer, AWS creates an ELB (Classic/NLB/ALB).
  • This SG controls traffic from the internet or other services to the service endpoints.

Summary Table

Security Group TypeCreated ByPurpose
Control Plane SGUser-definedAllow traffic from control plane to worker nodes
Worker Node SGAuto-createdAllow intra-node and control plane communication
Cluster Shared Node SGAuto-createdCommon communication for all nodes
Fargate Pod SGUser-definedManage traffic for Fargate pod ENIs
Load Balancer SGController/UserAllow external traffic to Kubernetes services

🧠 Best Practices

  • Always restrict Control Plane SG to only allow required ports (like 443).
  • Tag all SGs with kubernetes.io/cluster/<cluster-name> = owned for EKS to manage them.
  • Use Network Policies inside the cluster for fine-grained pod-to-pod security.
  • Monitor SGs with AWS Config to ensure compliance.

Find Trusted Cardiac Hospitals

Compare heart hospitals by city and services — all in one place.

Explore Hospitals
I’m a DevOps/SRE/DevSecOps/Cloud Expert passionate about sharing knowledge and experiences. I have worked at <a href="https://www.cotocus.com/">Cotocus</a>. I share tech blog at <a href="https://www.devopsschool.com/">DevOps School</a>, travel stories at <a href="https://www.holidaylandmark.com/">Holiday Landmark</a>, stock market tips at <a href="https://www.stocksmantra.in/">Stocks Mantra</a>, health and fitness guidance at <a href="https://www.mymedicplus.com/">My Medic Plus</a>, product reviews at <a href="https://www.truereviewnow.com/">TrueReviewNow</a> , and SEO strategies at <a href="https://www.wizbrand.com/">Wizbrand.</a> Do you want to learn <a href="https://www.quantumuting.com/">Quantum Computing</a>? <strong>Please find my social handles as below;</strong> <a href="https://www.rajeshkumar.xyz/">Rajesh Kumar Personal Website</a> <a href="https://www.youtube.com/TheDevOpsSchool">Rajesh Kumar at YOUTUBE</a> <a href="https://www.instagram.com/rajeshkumarin">Rajesh Kumar at INSTAGRAM</a> <a href="https://x.com/RajeshKumarIn">Rajesh Kumar at X</a> <a href="https://www.facebook.com/RajeshKumarLog">Rajesh Kumar at FACEBOOK</a> <a href="https://www.linkedin.com/in/rajeshkumarin/">Rajesh Kumar at LINKEDIN</a> <a href="https://www.wizbrand.com/rajeshkumar">Rajesh Kumar at WIZBRAND</a> <a href="https://www.rajeshkumar.xyz/dailylogs">Rajesh Kumar DailyLogs</a>

Related Posts

Top 10 Construction Management Software Tools in 2026: Features, Pros, Cons & Comparison

Introduction Construction Management Software (CMS) has become indispensable in 2026 for efficiently handling various aspects of construction projects, ranging from budgeting, scheduling, resource allocation, project tracking, to…

Read More

Top 10 Loan Management Software Tools in 2026: Features, Pros, Cons & Comparison

Introduction As the financial services sector continues to evolve, Loan Management Software (LMS) plays a pivotal role in helping businesses streamline their loan operations, from origination to…

Read More

Top 10 AI Presentation Design Tools in 2026: Features, Pros, Cons & Comparison

Introduction In 2026, AI presentation design tools have become indispensable for professionals, educators, and students aiming to create visually stunning and impactful slide decks with minimal effort….

Read More

Top 10 Web Design Software Tools in 2026: Features, Pros, Cons & Comparison

Introduction Web design software is a vital tool for both professionals and businesses looking to create visually appealing and functional websites. In 2026, with the increase in…

Read More

Top 10 AI Graphic Design Tools in 2026: Features, Pros, Cons & Comparison

Introduction In 2026, AI graphic design tools have transformed the creative landscape, empowering designers, marketers, and business owners to produce stunning visuals with unprecedented speed and efficiency….

Read More

Top 10 AI Poster & Flyer Design Tools in 2026: Features, Pros, Cons & Comparison

Introduction In 2026, AI-powered poster and flyer design tools have revolutionized the way businesses, marketers, educators, and creators produce visually stunning promotional materials. These tools leverage artificial…

Read More
Subscribe
Notify of
guest
0 Comments
Newest
Oldest Most Voted
Inline Feedbacks
View all comments
0
Would love your thoughts, please comment.x
()
x