Security Groups and NACLs
- Network Access Control List
 - Like firewall which control traffic from and to subnets.
 - 1 NACL / Subnet.
 - Rules have a number, higher precedence with a lower number.
 - Last rule is (*) which denies a request, if no rules match.
 - New NACLs denies everything; while, default NACL accepts everything.
 

With Ephemeral Ports
