From c2a13920414f9c3d80e7eb567162af52f7fe1a81 Mon Sep 17 00:00:00 2001 From: Mikael Frykholm Date: Wed, 17 Apr 2024 14:29:27 +0200 Subject: [PATCH] Open for remote access. --- main.tf | 20 ++++++++++++++++++++ 1 file changed, 20 insertions(+) diff --git a/main.tf b/main.tf index edda558..f966890 100644 --- a/main.tf +++ b/main.tf @@ -191,6 +191,26 @@ resource "openstack_networking_secgroup_rule_v2" "microk8s_rule18" { remote_group_id = openstack_networking_secgroup_v2.microk8s.id security_group_id = openstack_networking_secgroup_v2.microk8s.id } +resource "openstack_networking_secgroup_rule_v2" "microk8s_rule19" { + #We never know where Richard is, so allow from all of the known internet + direction = "ingress" + ethertype = "IPv4" + protocol = "udp" + port_range_min = 16443 + port_range_max = 16443 + remote_ip_prefix = "0.0.0.0/0" + security_group_id = openstack_networking_secgroup_v2.microk8s.id +} +resource "openstack_networking_secgroup_rule_v2" "microk8s_rule20" { + #We never know where Richard is, so allow from all of the known internet + direction = "ingress" + ethertype = "IPv6" + protocol = "udp" + port_range_min = 16443 + port_range_max = 16443 + remote_ip_prefix = "::/0" + security_group_id = openstack_networking_secgroup_v2.microk8s.id +} resource "openstack_compute_instance_v2" "controller-nodes" {