From 07d8014f26eaa4d0806cc191ede6e3f04eadaf1c Mon Sep 17 00:00:00 2001 From: William Graef Date: Fri, 30 Aug 2024 16:46:34 -0400 Subject: [PATCH 1/3] add nfs option for ingress --- ol/templates/ingress_security_rules.j2 | 14 ++++++++++++++ 1 file changed, 14 insertions(+) diff --git a/ol/templates/ingress_security_rules.j2 b/ol/templates/ingress_security_rules.j2 index 7ee57a6..c3d9835 100644 --- a/ol/templates/ingress_security_rules.j2 +++ b/ol/templates/ingress_security_rules.j2 @@ -39,4 +39,18 @@ instance_ingress_security_rules: destination_port_range: max: 8080 min: 8080 +{% endif %} +{% if use_nfs %} + - source: "10.0.0.0/0" + protocol: 6 + tcp_options: + destination_port_range: + max: 2049 + min: 2049 + - source: "10.0.0.0/0" + protocol: 17 + udp_options: + destination_port_range: + max: 2049 + min: 2049 {% endif %} \ No newline at end of file From 494fda80f60af5a92587950cfede43a6968d2c36 Mon Sep 17 00:00:00 2001 From: William Graef Date: Fri, 30 Aug 2024 16:48:16 -0400 Subject: [PATCH 2/3] add default nfs false --- ol/default_vars.yml | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/ol/default_vars.yml b/ol/default_vars.yml index a9d61ba..2a72a3b 100644 --- a/ol/default_vars.yml +++ b/ol/default_vars.yml @@ -42,4 +42,5 @@ update_all: false passwordless_ssh: false use_podman: false use_haproxy: false -use_nginx: false \ No newline at end of file +use_nginx: false +use_nfs: false \ No newline at end of file From 33acfc0848567fe2b4dd302ce6e8239edeb18c26 Mon Sep 17 00:00:00 2001 From: William Graef Date: Fri, 30 Aug 2024 17:03:17 -0400 Subject: [PATCH 3/3] fix cidr address for nfs --- ol/templates/ingress_security_rules.j2 | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/ol/templates/ingress_security_rules.j2 b/ol/templates/ingress_security_rules.j2 index c3d9835..de6a62c 100644 --- a/ol/templates/ingress_security_rules.j2 +++ b/ol/templates/ingress_security_rules.j2 @@ -41,13 +41,13 @@ instance_ingress_security_rules: min: 8080 {% endif %} {% if use_nfs %} - - source: "10.0.0.0/0" + - source: "10.0.0.0/24" protocol: 6 tcp_options: destination_port_range: max: 2049 min: 2049 - - source: "10.0.0.0/0" + - source: "10.0.0.0/24" protocol: 17 udp_options: destination_port_range: