NIFCLOUD instance uses the common private network

Place servers requiring isolation on a dedicated Private LAN.

Description

net-COMMON_PRIVATE is a private network shared by multiple users. A dedicated Private LAN is isolated from this shared network and helps define server communication boundaries.

Potential impact

Insufficient access controls may allow unwanted connection attempts from other systems on the shared network.

Remediation

Assign a nifcloud_private_lan to the instance’s network_id where isolation is required and permit only necessary traffic. Check IP addresses and application connection settings before migration.

Examples

These excerpts replace the shared network connection with an existing Private LAN. The referenced image, security group, and LAN configurations are omitted.

Before

hcl
resource "nifcloud_instance" "example" {
  image_id       = data.nifcloud_image.ubuntu.id
  security_group = nifcloud_security_group.example.group_name

  network_interface {
    network_id = "net-COMMON_PRIVATE"
  }
}

After

hcl
resource "nifcloud_instance" "example" {
  image_id       = data.nifcloud_image.ubuntu.id
  security_group = nifcloud_security_group.example.group_name

  network_interface {
    network_id = nifcloud_private_lan.main.id
  }
}

References