Free tools Windows power users keep installed
One-click scans. No signup required.
To let clients reach a service on an EC2 instance, add an inbound security-group rule for the service’s protocol and port, and restrict the rule to the intended source. That permission does not start the service or guarantee end-to-end connectivity. For coordinated placement across AWS accounts, compare Availability Zone IDs such as use1-az1, not lettered names such as us-east-1a.
How to open a port in an EC2 security group
A security group controls allowed inbound and outbound traffic for the resources associated with it. Its rules specify a direction, protocol, port or port range, and source for inbound traffic or destination for outbound traffic. AWS explains security-group traffic control.
For a service that must accept incoming TCP or UDP traffic, create an ingress rule matching the service’s protocol and port, then choose the narrowest source that includes the clients that need access. The ingress API describes these protocol, port, and source requirements. AWS: AuthorizeSecurityGroupIngress.
Check the rule’s four essentials
- Direction: inbound (ingress) for traffic arriving at the resource; outbound (egress) for traffic leaving it.
- Protocol: match what the service uses, such as TCP or UDP.
- Port or range: enter the service’s listening port or the required range.
- Source: for inbound access, specify the intended client address or network range rather than permitting unnecessary sources.
Examples: SSH and RDP
AWS’s CLI guide uses SSH on TCP port 22 and Windows RDP on TCP port 3389 as examples of ingress rules, with a source address or network range. These are examples of service ports, not a recommendation to expose remote administration to everyone. AWS: Creating, configuring, and deleting Amazon EC2 security groups in the AWS CLI.
#1 Best Overall
- 𝗢𝗻𝗲 𝗦𝘄𝗶𝘁𝗰𝗵 𝗠𝗮𝗱𝗲 𝘁𝗼 𝗘𝘅𝗽𝗮𝗻𝗱 𝗡𝗲𝘁𝘄𝗼𝗿𝗸: 5× 10/100/1000Mbps RJ45 Ports supporting Auto Negotiation and Auto MDI/MDIX.
- 𝗚𝗶𝗴𝗮𝗯𝗶𝘁 𝘁𝗵𝗮𝘁 𝗦𝗮𝘃𝗲𝘀 𝗘𝗻𝗲𝗿𝗴𝘆: Latest innovative energy-efficient technology greatly expands your network capacity with much less power consumption and helps save money.
- 𝗥𝗲𝗹𝗶𝗮𝗯𝗹𝗲 𝗮𝗻𝗱 𝗤𝘂𝗶𝗲𝘁: IEEE 802.3X flow control provides reliable data transfer and Fanless design ensures quiet operation.
- 𝗣𝗹𝘂𝗴 𝗮𝗻𝗱 𝗣𝗹𝗮𝘆: Easy setup with no software installation or configuration needed.
- 𝗔𝗱𝘃𝗮𝗻𝗰𝗲𝗱 𝗦𝗼𝗳𝘁𝘄𝗮𝗿𝗲 𝗙𝗲𝗮𝘁𝘂𝗿𝗲𝘀: Prioritize your traffic and guarantee high quality of video or voice data transmission with Port-based 802.1p/DSCP QoS and IGMP Snooping.
A rule change applies to resources associated with the security group, though a small propagation delay may occur. A successful rule update is only one part of reachability: the application must also be listening, and other relevant network, host-firewall, addressing, and application settings must allow the connection. AWS: security groups.
Why us-east-1a can mean a different AZ in another account
An Availability Zone name combines a Region code with a letter, for example us-east-2a. In certain older AWS Regions, accounts created before November 2025 can have independently mapped AZ names. As a result, the name us-east-1a in one account may identify a different physical location from us-east-1a in another. AWS says accounts created starting November 2025 receive the same mapping in the affected Regions; the behavior depends on Region and account creation date, so AZ names do not invariably differ across accounts. AWS: AZ IDs and AWS: Availability Zones.
Rank #2
- GIGABIT ETHERNET PORTS: Features 5 x 1.0Gbps Ethernet ports for high-speed connectivity. Auto-negotiating ports detect the optimal speed for connected devices and work with existing Cat5e or Cat6 Ethernet cables.
- PLUG-AND-PLAY UNMANAGED NETWORK SWITCH: Simple plug-and-play setup with no software to install or configuration required.
- FLEXIBLE MOUNTING OPTIONS: Compact metal design supports desktop or wall-mount placement for versatile installation.
- SILENT & ENERGY-EFFICIENT OPERATION: Fanless design ensures silent performance, while IEEE 802.3az Energy Efficient Ethernet reduces power consumption without compromising high-speed network performance.
- REGIONAL COMPATIBILITY: Made for use in U.S. & CA only
Use the AZ ID as the cross-account reference
An AZ ID, such as use1-az1, identifies the same physical Availability Zone location across AWS accounts. When coordinating subnet placement or aligning VPC layouts across accounts, compare AZ IDs rather than the account-visible letter suffix. AWS: AZ IDs.
Find each account’s name-to-ID mapping
In the EC2 console, the service health panel shows Availability Zone information. Or use the AWS CLI to list each zone’s name and ID in the current Region:
Quick wins for a faster PC:
Fix the driver behind crashes, sound loss and screen glitchesFind Drivers →Clear out junk files and repair common Windows errorsFree Scan →Scan for outdated or missing drivers - takes under a minuteDriver Scan →Rank #3
- GIGABIT ETHERNET PORTS: Features 8 x 1.0Gbps Ethernet ports for high-speed connectivity. Auto-negotiating ports detect the optimal speed for connected devices and work with existing Cat5e or Cat6 Ethernet cables.
- PLUG-AND-PLAY UNMANAGED NETWORK SWITCH: Simple plug-and-play setup with no software to install or configuration required.
- FLEXIBLE MOUNTING OPTIONS: Compact metal design supports desktop or wall-mount placement for versatile installation.
- SILENT & ENERGY-EFFICIENT OPERATION: Fanless design ensures silent performance, while IEEE 802.3az Energy Efficient Ethernet reduces power consumption without compromising high-speed network performance.
- REGIONAL COMPATIBILITY: Made for use in U.S. & CA only
aws ec2 describe-availability-zones --query "AvailabilityZones[].{Name:ZoneName,ID:ZoneId}" --output table
To query a different Region, add --region with that Region’s code. Compare the ID values from each account and select the same AZ ID when creating subnets for coordinated placement. AWS Prescriptive Guidance: Use consistent Availability Zones in VPCs across different AWS accounts.
Quick Recap
Best Value
- 【One Switch Made to Expand Network】Features 5 RJ45 ports with 10/100/1000Mbps speeds, supporting Auto-Negotiation and Auto MDI/MDIX for hassle-free setup. Ideal for expanding your network, with 1 uplink (input) port and 4 output ports to split your Ethernet connection to multiple devices.
- 【Gigabit that Saves Energy】Latest innovative energy-efficient technology greatly expands your network capacity with much less power consumption and helps save money
- 【Reliable and Quiet】IEEE 802.3X flow control provides reliable data transfer and Fanless design ensures quiet operation
- 【Plug and Play】Easy setup with no software installation or configuration needed
- 【Ethernet Splitter】Connect to your router or modem for additional wired connections (laptop, gaming console, printer, etc)
Rank #4
- 8 GIGABIT PORTS: Features 8 RJ45 ports supporting 10/100/1000 Mbps speeds, providing high-speed wired network connectivity for computers, printers, gaming consoles, and other Ethernet-enabled devices
- PLUG AND PLAY SETUP: No configuration required; simply connect the switch to your network devices and it is ready to use immediately, making network expansion quick and hassle-free
- FANLESS QUIET DESIGN: The fanless design ensures silent operation, making this switch suitable for noise-sensitive environments such as home offices, bedrooms, or conference rooms
- STURDY METAL CONSTRUCTION: Built with a durable metal housing and shielded ports that provide reliable performance, better heat dissipation, and protection against electromagnetic interference
- TRAFFIC OPTIMIZATION: Supports IEEE 802.3x flow control and advanced traffic optimization technology to reduce data bottlenecks and ensure smooth, efficient data transfer across your network
Two AWS details, two different kinds of identifier
| What you are configuring | What to match | Why it matters |
|---|---|---|
| Security-group traffic permission | Direction, protocol, port or range, and source or destination | The rule defines which traffic the associated resource is allowed to receive or send. |
| Availability Zone placement across accounts | AZ ID, such as use1-az1 |
The ID is the stable cross-account reference to a physical AZ location; a lettered name may be account-mapped. |
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

