From 7f4fd3ebd8e1f679d7c733ee00f669f477e273c7 Mon Sep 17 00:00:00 2001 From: David Kirwan Date: Mon, 8 Nov 2021 10:56:20 +0000 Subject: [PATCH] fcos-pipeline-migration: Permit oc client to connect to ocp4 cluster from batcave01 Signed-off-by: David Kirwan --- inventory/group_vars/proxies | 1 + inventory/group_vars/proxies_stg | 1 + 2 files changed, 2 insertions(+) diff --git a/inventory/group_vars/proxies b/inventory/group_vars/proxies index 5b0a25feef..cd9823025c 100644 --- a/inventory/group_vars/proxies +++ b/inventory/group_vars/proxies @@ -64,6 +64,7 @@ custom_rules: [ '-A INPUT -p tcp -m tcp --dport 44342 -s 209.132.183.252 -j ACCEPT', # Allow ocp control plane hosts + '-A INPUT -p tcp -m tcp --dport 6443 -s 10.3.163.35 -j ACCEPT', # batcave01 '-A INPUT -p tcp -m tcp --dport 6443 -s 10.3.163.120 -j ACCEPT', '-A INPUT -p tcp -m tcp --dport 6443 -s 10.3.163.121 -j ACCEPT', '-A INPUT -p tcp -m tcp --dport 6443 -s 10.3.163.122 -j ACCEPT', diff --git a/inventory/group_vars/proxies_stg b/inventory/group_vars/proxies_stg index 341ad52143..7a0d79c65c 100644 --- a/inventory/group_vars/proxies_stg +++ b/inventory/group_vars/proxies_stg @@ -66,6 +66,7 @@ custom_rules: [ # Allow happinesspackets-stg.fedorainfracloud.org to talk to the inbound fedmsg relay '-A INPUT -p tcp -m tcp --dport 9941 -s 209.132.184.123 -j ACCEPT', # Allow ocp control plane hosts + '-A INPUT -p tcp -m tcp --dport 6443 -s 10.3.163.35 -j ACCEPT', # batcave01 '-A INPUT -p tcp -m tcp --dport 6443 -s 10.3.166.115 -j ACCEPT', '-A INPUT -p tcp -m tcp --dport 6443 -s 10.3.166.116 -j ACCEPT', '-A INPUT -p tcp -m tcp --dport 6443 -s 10.3.166.117 -j ACCEPT',