By phileki
I have my appServers tagged as apps and my database server(s) tagged as db
Using purely digital ocean’s firewalls, create 2 rules:
tag:db rules
Incoming
Outgoing
tag:apps rules
Incoming
Outgoing
This seems to make a lot of sense and I feel like I :
Could anyone help me understand why I should security-wise?
This textbox defaults to using Markdown to format your answer.
You can type !ref in this text area to quickly search our full set of tutorials, documentation & marketplace offerings and insert the link!
That looks good to me! As long as you have your DO Firewalls configured properly (sounds like you do!), you won’t need to set up UFW or IPTables on your Droplet.
I agree with the first two points but not so much the third. I recommend setting up auth in MongoDB either way. This will keep your data safe in case something goes wrong and yours databases become publicly accessible for some reason. Better be safe than sorry!
Get paid to write technical tutorials and select a tech-focused charity to receive a matching donation.
Full documentation for every DigitalOcean product.
The Wave has everything you need to know about building a business, from raising funding to marketing your product.
Stay up to date by signing up for DigitalOcean’s Infrastructure as a Newsletter.
New accounts only. By submitting your email you agree to our Privacy Policy
Scale up as you grow — whether you're running one virtual machine or ten thousand.
Sign up and get $200 in credit for your first 60 days with DigitalOcean.*
*This promotional offer applies to new accounts only.