From fcaa4004529a6ee73e4c9e7b26d75282c1599d17 Mon Sep 17 00:00:00 2001 From: toby Date: Mon, 26 Nov 2018 19:17:31 +0100 Subject: [PATCH] removing ceph rgw 8080 for now since it's not in use --- files/firewall | 2 -- 1 file changed, 2 deletions(-) diff --git a/files/firewall b/files/firewall index 4b32587..c965521 100755 --- a/files/firewall +++ b/files/firewall @@ -37,8 +37,6 @@ case $1 in iptables -A INPUT -m policy --pol ipsec --dir in -p tcp --dport 22 -j ACCEPT # ssh if coming over the VPN iptables -A INPUT -m policy --pol ipsec --dir in -p udp --sport 123 -j ACCEPT # ntp if coming over the VPN iptables -A INPUT -m policy --pol ipsec --dir in -p udp --dport 4789 -j ACCEPT # vxlan traffic - iptables -A INPUT -m policy --pol ipsec --dir in -p tcp --dport 8080 -j ACCEPT # ceph rgw traffic - iptables -A INPUT -m policy --pol ipsec --dir in -p tcp --sport 8080 -j ACCEPT # ceph rgw traffic iptables -A INPUT -m policy --pol ipsec --dir in -p tcp --dport 6789 -j ACCEPT # ceph mon traffic iptables -A INPUT -m policy --pol ipsec --dir in -p tcp --sport 6789 -j ACCEPT # ceph mon traffic iptables -A INPUT -m policy --pol ipsec --dir in -m multiport -p tcp --dports 6800:7300 -j ACCEPT # ceph osd traffic