I have been experimenting with the bastion module - specifically with Fargate and MSK. I use a client-sg security group to control access to my MSK cluster. However, I think I would need to apply this security group to the created bastion host to allow the bastion to see MSK on the private subnet. The bastion instance is created in the ssh-bastion module and I can’t pass any client-sg parameters in.
Is there a way to resolve this, or have I missed the point?