By default, a newly created security group in a VPC denies all inbound traffic until you create inbound traffic rules allowing it. This security measure ensures that no unintended services are exposed unless explicitly allowed by the architect or administrator. The 'deny all' default helps in maintaining a secure network posture aligning with the principle of least privilege.
Learn More
AI Generated Content may display inaccurate information, always double-check anything important.
What are security groups in AWS VPC?
What is the principle of least privilege?
How do I create inbound traffic rules in a security group?