copr: production: keygen <-> backend IP connection

This commit is contained in:
Pavel Raiskup 2019-07-18 10:57:34 +02:00
parent 0b7edd9ae6
commit 8ecfe20ae3
3 changed files with 8 additions and 6 deletions

View file

@ -4,8 +4,9 @@ _forward_src: "forward"
# don't forget to update ip in ./copr-keygen, due to custom firewall rules
copr_backend_ips: ["172.25.33.43", "209.132.184.48"]
keygen_host: "172.25.33.41"
# eth0, eth1
copr_backend_ips: ["172.25.33.79", "172.25.82.25"]
keygen_host: "172.25.33.75"
resolvconf: "resolv.conf/cloud"

View file

@ -5,6 +5,7 @@ _forward_src: "forward_dev"
# don't forget to update ip in ./copr-keygen-stg, due to custom firewall rules
# eth0, eth1
copr_backend_ips: ["172.25.33.74", "172.25.155.6"]
keygen_host: "172.25.33.73"

View file

@ -2,10 +2,10 @@
tcp_ports: [22]
# http + signd dest ports
custom_rules: [ '-A INPUT -p tcp -m tcp -s 172.25.33.43 --dport 80 -j ACCEPT',
'-A INPUT -p tcp -m tcp -s 209.132.184.48 --dport 80 -j ACCEPT',
'-A INPUT -p tcp -m tcp -s 172.25.33.43 --dport 5167 -j ACCEPT',
'-A INPUT -p tcp -m tcp -s 209.132.184.48 --dport 5167 -j ACCEPT']
custom_rules: [ '-A INPUT -p tcp -m tcp -s 172.25.33.79 --dport 80 -j ACCEPT',
'-A INPUT -p tcp -m tcp -s 172.25.82.25 --dport 80 -j ACCEPT',
'-A INPUT -p tcp -m tcp -s 172.25.33.79 --dport 5167 -j ACCEPT',
'-A INPUT -p tcp -m tcp -s 172.25.82.25 --dport 5167 -j ACCEPT']
datacenter: cloud