Amazon web services Terraform aws安全组更改

Amazon web services Terraform aws安全组更改,amazon-web-services,terraform,Amazon Web Services,Terraform,当我运行Terraform apply和之后的计划时,总会有另一个未完成的对安全组的修改。我不太明白怎么读这个。有人能解释一下吗 terraform plan ~ module.emr.aws_security_group.ds-emr-master ingress.#: "3" => "4" ingress.2364643915.cidr_blocks.#: "0" => "

当我运行Terraform apply和之后的计划时,总会有另一个未完成的对安全组的修改。我不太明白怎么读这个。有人能解释一下吗

terraform plan
~ module.emr.aws_security_group.ds-emr-master
ingress.#:                                       "3" => "4"

ingress.2364643915.cidr_blocks.#:                "0" => "2"
ingress.2364643915.cidr_blocks.0:                "" => "34.x.x.x/32"
ingress.2364643915.cidr_blocks.1:                "" => "172.x.x.x/32"
ingress.2364643915.from_port:                    "" => "0"
ingress.2364643915.protocol:                     "" => "-1"
ingress.2364643915.self:                         "" => "false"
ingress.2364643915.to_port:                      "" => "0"

ingress.3989612637.cidr_blocks.#:                "2" => "0"
ingress.3989612637.cidr_blocks.0:                "34.x.x.x/32" => ""
ingress.3989612637.cidr_blocks.1:                "172.x.x.x/32" => ""
ingress.3989612637.protocol:                     "-1" => ""
ingress.3989612637.security_groups.#:            "1" => "0"
ingress.3989612637.security_groups.3719875660:   "sg-xxxxx" => ""

ingress.4127332019.from_port:                    "" => "0"
ingress.4127332019.protocol:                     "" => "-1"
ingress.4127332019.security_groups.#:            "0" => "1"
ingress.4127332019.security_groups.3719875660:   "" => "sg-xxxxx"
ingress.4127332019.self:                         "" => "false"
ingress.4127332019.to_port:                      "" => "0"

您可以包括您的Terraform模板,或者至少包括相关部分吗?看起来这是一个悬而未决的问题,我建议在
aws\u security\u组中创建不包含任何规则的安全组。将规则作为独立的资源。在
aws\u security\u组
本身中执行这些操作是有缺陷的。