{"id":"default-nacl-allows-all-custom-nacl-denies-all","text":"The default VPC Network ACL allows all inbound and outbound traffic; custom NACLs deny all traffic by default until rules are added.","truth_value":"IN","source":"entries/2026/03/08/vpc-subnets.md","source_url":"","source_hash":"d4faa1e970199eeb","justifications":[],"dependents":[],"metadata":{},"explanation":{"steps":[{"node":"default-nacl-allows-all-custom-nacl-denies-all","truth_value":"IN","reason":"premise"}]}}