aboutsummaryrefslogtreecommitdiff
path: root/etc/describe-security-groups.fln
blob: 6397d38920c32c1e1a944345aa62dd55161188d7 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
/* This file is part of Eclat.
   Copyright (C) 2012-2015 Sergey Poznyakoff.
 
   Eclat is free software; you can redistribute it and/or modify
   it under the terms of the GNU General Public License as published by
   the Free Software Foundation; either version 3, or (at your option)
   any later version.
 
   Eclat is distributed in the hope that it will be useful,
   but WITHOUT ANY WARRANTY; without even the implied warranty of
   MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
   GNU General Public License for more details.
 
   You should have received a copy of the GNU General Public License
   along with Eclat.  If not, see <http://www.gnu.org/licenses/>. */

if (.DescribeSecurityGroupsResponse.securityGroupInfo) {
  for (grp in .DescribeSecurityGroupsResponse.securityGroupInfo.item) {
    print("Group ", grp.groupId,"\t", grp.groupName, "\t",
          grp.groupDescription, "\n");
    print("VPC ID: ", grp.vpcId, "\n");
    for (var in grp.tagSet.item) {
      print("TAG ", var.key, "\t", var.value, "\n");
    }
    print("Incoming:\n");
    for (var in grp.ipPermissions.item) {
      for (range in var.ipRanges.item) {
        if (var.ipProtocol == "-1")
	  print("all");
	else
          print(var.ipProtocol);
        print("\t",range.cidrIp,"\t",var.fromPort);
	if (var.fromPort != var.toPort)
	  print("-",var.toPort);
	print("\n");
      }
      for (usr in var.groups.item) {
        print("user ", usr.userId, ", group ", usr.groupId, " (", usr.groupName,
	      ")\t", var.fromPort);
	if (var.fromPort != var.toPort)
	  print("-",var.toPort);
	print("\n");
      }
    }
      
    print("Outgoing:\n");
    for (var in grp.ipPermissionsEgress.item) {
      for (range in var.ipRanges.item) {
        if (var.ipProtocol == "-1")
	  print("all");
	else
          print(var.ipProtocol);
	print("\t",range.cidrIp,"\t",var.fromPort);
	if (var.fromPort != var.toPort)
	  print("-",var.toPort);
	print("\n");
      }
      for (usr in var.groups.item) {
        print("user ", usr.userId, ", group ", usr.groupId, " (", usr.groupName,
	      ")\t", var.fromPort);
	if (var.fromPort != var.toPort)
	  print("-",var.toPort);
	print("\n");
      }
    }
  }
}

Return to:

Send suggestions and report system problems to the System administrator.