Comment 0 for bug 1607826

Revision history for this message
Kevin Lefevre (archifleks) wrote :

Security group prot are hardcoded in heat templates for k8s (in coreos and atomic) maybe we could do something like :

 secgroup_kube_master:
    type: OS::Neutron::SecurityGroup
    properties:
      rules:
        - protocol: tcp
          port_range_min: 7080
          port_range_max: 7080
        - protocol: tcp
          port_range_min: {get_resource: kubernetes_insecure_port}
          port_range_max: {get_resource: kubernetes_insecure_port}
        - protocol: tcp
          port_range_min: 2379
          port_range_max: 2379
        - protocol: tcp
          port_range_min: 2380
          port_range_max: 2380
        - protocol: tcp
          port_range_min: {get_resource: kubernetes_port}
          port_range_max: {get_resource: kubernetes_port}
        - protocol: tcp
          port_range_min: 30000
          port_range_max: 32767