From 39ea1ad1ee5643b00f40d13d847badf0d3f16dd1 Mon Sep 17 00:00:00 2001 From: Mike Reeves Date: Fri, 8 Mar 2019 13:07:11 -0500 Subject: [PATCH] Firewall Module - Add rules for hive --- salt/firewall/init.sls | 44 ++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 44 insertions(+) diff --git a/salt/firewall/init.sls b/salt/firewall/init.sls index c2fb74e77..0d5fd174d 100644 --- a/salt/firewall/init.sls +++ b/salt/firewall/init.sls @@ -173,6 +173,28 @@ enable_masternode_ES_9300_{{ip}}: - position: 1 - save: True +enable_masternode_ES_9400_{{ip}}: + iptables.insert: + - table: filter + - chain: DOCKER-USER + - jump: ACCEPT + - proto: tcp + - source: {{ ip }} + - dport: 9400 + - position: 1 + - save: True + +enable_masternode_ES_9500_{{ip}}: + iptables.insert: + - table: filter + - chain: DOCKER-USER + - jump: ACCEPT + - proto: tcp + - source: {{ ip }} + - dport: 9500 + - position: 1 + - save: True + enable_masternode_influxdb_8086_{{ip}}: iptables.insert: - table: filter @@ -367,6 +389,28 @@ enable_standard_analyst_3000_{{ip}}: - position: 1 - save: True +enable_standard_analyst_9000_{{ip}}: + iptables.insert: + - table: filter + - chain: DOCKER-USER + - jump: ACCEPT + - proto: tcp + - source: {{ ip }} + - dport: 9000 + - position: 1 + - save: True + +enable_standard_analyst_9001_{{ip}}: + iptables.insert: + - table: filter + - chain: DOCKER-USER + - jump: ACCEPT + - proto: tcp + - source: {{ ip }} + - dport: 9001 + - position: 1 + - save: True + {% endfor %} # Rules for storage nodes connecting to master