a. Create Security Group

If you’d like to keep the Security Group locked down, skip this step and follow the instructions in b. Modify Cluster Config and d. No-Ingress DCV Session. Keep in mind performance will be slower over an SSM pipe.

The first step is to create a security group that allows you to connect to the compute nodes on port 8443. We’ll use this later in the AdditionalSecurityGroups section of the queue.

  1. Go to EC2 Security Group Create
  • Name: DCV
  • Add an Ingress rule, Custom TCP, Port 8443,
  • Description Allow connecting to the compute nodes via DCV


  1. Leave the outbound rules the same, save the Security Group.