Also, don't use 0.0.0.0/0 in a security group rule!
P.S. Azure has load balancers and security groups too- in fact their security groups are better than AWS's in some ways such as supporting thousands of rules instead of only 50.
P.S. Azure has load balancers and security groups too- in fact their security groups are better than AWS's in some ways such as supporting thousands of rules instead of only 50.
0 - For API servers. I'm not sure if you could configure this with services like Elasticsearch.
You can achieve a similar effect in AWS, by declaring only the LB's security group as the source in servers' security group ingress rule.
Any requests sent directly to the servers simply wouldn't connect.
AWS and GCP load balancers are more like an endpoint. Your network is otherwise unaffected.