You are viewing an old version of this content. View the current version.
Compare with Current
View Version History
« Previous
Version 4
Next »

ALB with proper certificates
EC2 Instance (t3.medium) x 2
Amazon Aurora Database
OAuth Details ( Okta/ GoogleAuth etc)
EC2 Instance 1: Roost Control Plane
| |
---|
AMI | Choose Ubuntu 20 (ubuntu-focal-20.04) |
Instance Type | t3.medium |
Storage | Root Volume: 20GB EBS: 100GB ( Disable Delete on termination) |
Termination protection | Enable |
Security Group Rules | SSH (port 22) HTTP (port 80) HTTPS (port 443) Custom TCP Port 2502 (for Stun)
|
2. EC2 Instance 2: Roost Proxy
| |
---|
AMI | Choose Ubuntu 20 (ubuntu-focal-20.04) |
Instance Type | t3.medium |
Storage | Root Volume: 20GB EBS: 100GB ( Disable Delete on termination) |
Termination protection | Enable |
Security Group Rules | Security group for the web-console proxy to allow TCP traffic from VPC or any source IP TCP Port 5000 for Docker Host TCP Port 5002 for Docker Insecure Registry TCP Port 60001 for JumpHost RoostApi Server TCP Port 60002 for ClusterLauncher TCP Port 60003 for EaaS API Server TCP Port 60005 for Cypress Video Server TCP Port 60006 for Web-console(gotty) default service - ubuntu user TCP Port 62020-62050 for dynamic gotty ports - mapped to individual users
|
3. Database : Amazon Aurora
Select “Easy create” option with recommended best practice configuration from AWS