---
title: arpio-config:fsx:SecurityGroupIds
description: Constrain the SecurityGroupIds values used to create the filesystem to include only the values present in the tag's value.
---

[Skip to content](https://docs.arpio.io/arpio-configfsxadsecuritygroupids#main-content)

English

Show submenu for translations

[Customer ticket portal](https://docs.arpio.io/tickets-view?hsLang=en)

- Home
- Products
- Pricing
- Blog
- Company

Open main navigation

Close main navigation

- Home
- Products
- Pricing
- Blog
- Company
- English
  
  Show submenu for translations
- [Customer ticket portal](https://docs.arpio.io/tickets-view)

 Welcome to Arpio Technical Docs

- There are no suggestions because the search field is empty.

1. [Arpio Documentation](https://docs.arpio.io/?hsLang=en)
2. [AWS Reference Guides](https://docs.arpio.io/aws-reference-guides?hsLang=en)
3. [AWS Configuration Tags](https://docs.arpio.io/aws-reference-guides?hsLang=en#aws-configuration-tags)

# arpio-config:fsx:SecurityGroupIds

## Constrain the SecurityGroupIds values used to create the filesystem to include only the values present in the tag's value.

```
arpio-config:fsx:SecurityGroupIds = <security-group-ids>
```

#### \<security-group-ids\>

A list of the primary environment security group IDs, separated by whitespace, that are necessary to create the filesystem in the recovery environment.

### Supported Resources

- FSx file systems

### Description

This tag helps Arpio create the filesystem in the recovery environment with the correct initial set of security groups when more than the create limit are present and Arpio cannot automatically determine which security groups are necessary.  After the filesystem is created, Arpio will associate all additional security groups automatically.

The tag's value is used to *reduce* the set of security group IDs presented during the request to restore the filesystem so that it doesn't exceed AWS limits for filesystem creation.  When a primary environment filesystem has a small number of security groups assigned to its associated ENIs, use of this tag is not necessary.  When the count of security groups across all associated ENIs exceeds the create limit for the filesystem type, this config tag is necessary to ensure the filesystem is restored with the correct set of initial security groups.  The limit varies per filesystem type, and possibly based on account quota limits (see below).

#### FSx for Windows Notes

The limit on security groups for FSx for Windows filesystem creation is **5**, even if the *Security groups per network interface* quota limit has been increased to a higher number in the recovery environment.  Use this tag when the primary environment filesystem has more than 5 security groups assigned across its associated ENIs.  Specify between 1 and 5 security group IDs in the tag's value, separated by whitespace.  Ensure the set of security groups you choose will allow the filesystem to connect to its associated Active Directory during recovery.

### Examples

| Tag | Value |
| --- | --- |
| ``` arpio-config:fsx:SecurityGroupIds ``` | sg-00708db8e96ab765a |
| ``` arpio-config:fsx:SecurityGroupIds ``` | sg-00708db8e96ab765a sg-06fa4cdb21d80e7aa |

The first example tells Arpio to create the filesystem using one security group ID.  The second example specifies two security group IDs, separated by a space.

- [Getting Started](https://docs.arpio.io/getting-started?hsLang=en#main-content)

    - [New Account Setup](https://docs.arpio.io/getting-started?hsLang=en#new-account-setup)
    - [New Application Setup](https://docs.arpio.io/getting-started?hsLang=en#new-application-setup)
- [Arpio Fundamentals](https://docs.arpio.io/arpio-fundamentals?hsLang=en#main-content)

    - [Platform Fundamentals](https://docs.arpio.io/arpio-fundamentals?hsLang=en#platform-fundamentals)
    - [Platform Features](https://docs.arpio.io/arpio-fundamentals?hsLang=en#platform-features)
- [Arpio Reference Guides](https://docs.arpio.io/arpio-reference-guides?hsLang=en#main-content)

    - [Arpio API](https://docs.arpio.io/arpio-reference-guides?hsLang=en#arpio-api)
    - [Lifecycle Events](https://docs.arpio.io/arpio-reference-guides?hsLang=en#lifecycle-events)
    - [Role-Based Access Controls (RBAC)](https://docs.arpio.io/arpio-reference-guides?hsLang=en#role-based-access-controls-rbac)
    - [Single Sign-On (SSO) Integration](https://docs.arpio.io/arpio-reference-guides?hsLang=en#single-sign-on-sso-integration)
    - [Test Planning](https://docs.arpio.io/arpio-reference-guides?hsLang=en#test-planning)
    - [Test & Recovery How-To](https://docs.arpio.io/arpio-reference-guides?hsLang=en#test-recovery-how-to)
- [AWS Reference Guides](https://docs.arpio.io/aws-reference-guides?hsLang=en#main-content)

    - [AWS Resource Reference](https://docs.arpio.io/aws-reference-guides?hsLang=en#aws-resource-reference)
    - [AWS Configuration Tags](https://docs.arpio.io/aws-reference-guides?hsLang=en#aws-configuration-tags)
    - [AWS Access](https://docs.arpio.io/aws-reference-guides?hsLang=en#aws-access)
    - [AWS Testing](https://docs.arpio.io/aws-reference-guides?hsLang=en#aws-testing)
    - [AWS Solutions](https://docs.arpio.io/aws-reference-guides?hsLang=en#aws-solutions)
- [Azure Reference Guides](https://docs.arpio.io/azure-reference-guides?hsLang=en#main-content)

    - [Azure Resource Reference](https://docs.arpio.io/azure-reference-guides?hsLang=en#azure-resource-reference)
    - [Azure Configuration Tags](https://docs.arpio.io/azure-reference-guides?hsLang=en#azure-configuration-tags)
    - [Azure Scenarios](https://docs.arpio.io/azure-reference-guides?hsLang=en#azure-scenarios)
- [FAQ](https://docs.arpio.io/faq?hsLang=en#main-content)

    - [AWS FAQ](https://docs.arpio.io/faq?hsLang=en#aws-faq)
    - [Contact Support](https://docs.arpio.io/faq?hsLang=en#contact-support)
    - [License & Billing](https://docs.arpio.io/faq?hsLang=en#license-billing)
    - [Tests and Recoveries](https://docs.arpio.io/faq?hsLang=en#tests-and-recoveries)

- Home
- Products
- Pricing
- Blog
- Company

[![bubble-wand-tight.64](https://docs.arpio.io/hs-fs/hubfs/bubble-wand-tight.64.png?width=64&height=64&name=bubble-wand-tight.64.png "bubble-wand-tight.64")](https://arpio.io)

Copyright © 2026, Arpio