How to restrict access to the nodes to only the External Load Balancer's IP? #10982
Unanswered
fabienvauchelles
asked this question in
Q&A
Replies: 1 comment
-
Hi, any ideas ? |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
Environmental Info:
Cluster Configuration:
Note: Servers are directly exposed to the internet without the option of using a private network or firewall rules
Describe the question:
How to restrict access to the nodes to only the External Load Balancer's IP?
Actual behavior:
Currently, ports 80, 443, NodePorts, and ETCD ports (2379, 2380) are open to the internet, and I wish to limit inbound traffic on the servers to just the load balancer's IP.
Expected behavior:
Only port 22 (SSH) and 6443 (API) are publicly opened.
Tests:
I've attempted:
Thanks for your help
Beta Was this translation helpful? Give feedback.
All reactions