Does Security Groups behave as least restrictive or most restrictive?

Security Groups behave as least restrictive (ALLOW over BLOCK). This means that if you have configured Security Groups with conflicting rules the Security Group with the least restrictive rule will be active.