rgnet-wiki/pages/ganeti-port-80-filters.md

1.3 KiB

Ganeti Port 80 Filters

Westin

iptables -A INPUT -i br-lan -p tcp --destination-port 80 -s 127.0.0.1 -j ACCEPT
iptables -A INPUT -i br-lan -p tcp --destination-port 80 -s 147.28.0.14 -j ACCEPT
iptables -A INPUT -i br-lan -p tcp --destination-port 80 -s 147.28.0.15 -j ACCEPT
iptables -A INPUT -i br-lan -p tcp --destination-port 80 -s 147.28.0.16 -j ACCEPT
iptables -A INPUT -i br-lan -p tcp --destination-port 80 -s 147.28.0.29 -j ACCEPT
iptables -A INPUT -i br-lan -p tcp --destination-port 80 -j DROP

Ashburn

iptables -A INPUT -i br-lan -p tcp --destination-port 80 -s 127.0.0.1 -j ACCEPT
iptables -A INPUT -i br-lan -p tcp --destination-port 80 -s 198.180.150.8 -j ACCEPT
# vm1.iad has been decommissioned
# iptables -A INPUT -i br-lan -p tcp --destination-port 80 -s 198.180.150.4 -j ACCEPT
iptables -A INPUT -i br-lan -p tcp --destination-port 80 -s 198.180.150.10 -j ACCEPT
iptables -A INPUT -i br-lan -p tcp --destination-port 80 -j DROP

Dallas

iptables -A INPUT -i br-lan -p tcp --destination-port 80 -s 127.0.0.1 -j ACCEPT
iptables -A INPUT -i br-lan -p tcp --destination-port 80 -s 198.180.152.30 -j ACCEPT
iptables -A INPUT -i br-lan -p tcp --destination-port 80 -s 198.180.152.7 -j ACCEPT
iptables -A INPUT -i br-lan -p tcp --destination-port 80 -j DROP

2022.10.16