code-dumps/aws/list-unused-sg.sh

10 lines
300 B
Bash
Raw Normal View History

2023-06-07 13:39:37 +08:00
#!/bin/bash
aws ec2 describe-network-interfaces --query NetworkInterfaces[].Groups --output text > /tmp/enisg.lst
for sg in $(aws ec2 describe-security-groups --query 'SecurityGroups[*].GroupId' --output text); do
echo -n "$sg : "
grep -c $sg /tmp/enisg.lst
done | sort -k3 -n
rm -f /tmp/enisg.lst