main.yml 636 B

123456789101112131415161718192021222324252627282930
  1. ---
  2. openshift_node_ips: []
  3. # TODO: update setting these values based on the facts
  4. os_firewall_allow:
  5. - service: etcd embedded
  6. port: 4001/tcp
  7. - service: api server https
  8. port: 8443/tcp
  9. - service: dns tcp
  10. port: 53/tcp
  11. - service: dns udp
  12. port: 53/udp
  13. - service: Fluentd td-agent tcp
  14. port: 24224/tcp
  15. - service: Fluentd td-agent udp
  16. port: 24224/udp
  17. - service: pcsd
  18. port: 2224/tcp
  19. - service: Corosync UDP
  20. port: 5404/udp
  21. - service: Corosync UDP
  22. port: 5405/udp
  23. os_firewall_deny:
  24. - service: api server http
  25. port: 8080/tcp
  26. - service: former web console port
  27. port: 8444/tcp
  28. - service: former etcd peer port
  29. port: 7001/tcp