From 5a0e7f91639242889667b80ad8bd886688827788 Mon Sep 17 00:00:00 2001 From: Amit Sagtani Date: Thu, 21 Nov 2024 12:22:44 +0100 Subject: [PATCH] remove temp firewall rules --- .../main.tf | 43 ------------------- 1 file changed, 43 deletions(-) diff --git a/terraform/examples/wire-server-deploy-offline-hetzner/main.tf b/terraform/examples/wire-server-deploy-offline-hetzner/main.tf index 3a48ccaa8..dfd9b7b61 100644 --- a/terraform/examples/wire-server-deploy-offline-hetzner/main.tf +++ b/terraform/examples/wire-server-deploy-offline-hetzner/main.tf @@ -20,49 +20,6 @@ locals { - iptables -A OUTPUT -o eth0 -p udp --dport 123 -j ACCEPT - ip6tables -A OUTPUT -o eth0 -p udp --dport 123 -j ACCEPT - # Cassandra (inbound and outbound) - - iptables -A OUTPUT -o eth0 -p tcp --dport 9042 -j ACCEPT - - ip6tables -A OUTPUT -o eth0 -p tcp --dport 9042 -j ACCEPT - - iptables -A INPUT -i eth0 -p tcp --sport 9042 -j ACCEPT - - ip6tables -A INPUT -i eth0 -p tcp --sport 9042 -j ACCEPT - - - iptables -A OUTPUT -o eth0 -p tcp --dport 9160 -j ACCEPT - - ip6tables -A OUTPUT -o eth0 -p tcp --dport 9160 -j ACCEPT - - iptables -A INPUT -i eth0 -p tcp --sport 9160 -j ACCEPT - - ip6tables -A INPUT -i eth0 -p tcp --sport 9160 -j ACCEPT - - - iptables -A OUTPUT -o eth0 -p tcp --dport 7000 -j ACCEPT - - ip6tables -A OUTPUT -o eth0 -p tcp --dport 7000 -j ACCEPT - - iptables -A INPUT -i eth0 -p tcp --sport 7000 -j ACCEPT - - ip6tables -A INPUT -i eth0 -p tcp --sport 7000 -j ACCEPT - - - iptables -A OUTPUT -o eth0 -p tcp --dport 7199 -j ACCEPT - - ip6tables -A OUTPUT -o eth0 -p tcp --dport 7199 -j ACCEPT - - iptables -A INPUT -i eth0 -p tcp --sport 7199 -j ACCEPT - - ip6tables -A INPUT -i eth0 -p tcp --sport 7199 -j ACCEPT - - # Elasticsearch (inbound and outbound) - - iptables -A OUTPUT -o eth0 -p tcp --dport 9300 -j ACCEPT - - ip6tables -A OUTPUT -o eth0 -p tcp --dport 9300 -j ACCEPT - - iptables -A INPUT -i eth0 -p tcp --sport 9300 -j ACCEPT - - ip6tables -A INPUT -i eth0 -p tcp --sport 9300 -j ACCEPT - - - iptables -A OUTPUT -o eth0 -p tcp --dport 9200 -j ACCEPT - - ip6tables -A OUTPUT -o eth0 -p tcp --dport 9200 -j ACCEPT - - iptables -A INPUT -i eth0 -p tcp --sport 9200 -j ACCEPT - - ip6tables -A INPUT -i eth0 -p tcp --sport 9200 -j ACCEPT - - # MinIO (inbound and outbound) - - iptables -A OUTPUT -o eth0 -p tcp --dport 9000 -j ACCEPT - - ip6tables -A OUTPUT -o eth0 -p tcp --dport 9000 -j ACCEPT - - iptables -A INPUT -i eth0 -p tcp --sport 9000 -j ACCEPT - - ip6tables -A INPUT -i eth0 -p tcp --sport 9000 -j ACCEPT - - - iptables -A OUTPUT -o eth0 -p tcp --dport 9092 -j ACCEPT - - ip6tables -A OUTPUT -o eth0 -p tcp --dport 9092 -j ACCEPT - - iptables -A INPUT -i eth0 -p tcp --sport 9092 -j ACCEPT - - ip6tables -A INPUT -i eth0 -p tcp --sport 9092 -j ACCEPT - # Drop all other traffic - iptables -A OUTPUT -o eth0 -j DROP - ip6tables -A OUTPUT -o eth0 -j DROP