Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[enhancement] Mac compliant with AWS sponsored machines #409

Open
adrianriobo opened this issue Mar 5, 2025 · 0 comments · May be fixed by #421
Open

[enhancement] Mac compliant with AWS sponsored machines #409

adrianriobo opened this issue Mar 5, 2025 · 0 comments · May be fixed by #421
Assignees

Comments

@adrianriobo
Copy link
Collaborator

There are certain policies to be adopted ir order to use the mac service as a sponsored service by AWS.

ssh connections

  • We need to change the default port

To try this we can use https://github.com/aws/ec2-macos-init/blob/master/README.md#userdata to try to change the ssh port, we still need to see how this will impact / affect the replace root volume action.

Other option would be to create specific policy to allow ssh connections from a ciddr block, currently request and release operation typically are invoked from an external entity so control the IPs is almost impossible, a possible solution to this is move full serverless the service...then all ssh invocation will be done from the container being executed on Fargate (knonw ciddr block, or may we can use security groups to meet the requirement)

@adrianriobo adrianriobo self-assigned this Mar 5, 2025
@adrianriobo adrianriobo linked a pull request Mar 11, 2025 that will close this issue
@adrianriobo adrianriobo moved this from Todo to Work In Progress in Project planning: crc Mar 11, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging a pull request may close this issue.

1 participant