Define both groups, define all rules as `SecurityGroupRule`s.
s
salmon-account-74572
08/21/2019, 7:07 PM
I was really hoping that wasn't the answer. Thanks.
b
boundless-monkey-50243
08/21/2019, 7:20 PM
Yeah, it's one of those places where you realize that all this stuff is sitting on top of a not-always-great API.
l
limited-rainbow-51650
08/22/2019, 5:37 AM
TF bumped into the same problem in earlier days which was the reason to introduce separate SecurityGroupRule resources. With the Pulumi AWS provider based on the TF AWS provider, they are bound to the same setup.