Skip to content

F #274: Add simple firewall port opener role (helper/fw) - #280

Open
sk4zuzu wants to merge 3 commits into
masterfrom
f-274
Open

F #274: Add simple firewall port opener role (helper/fw)#280
sk4zuzu wants to merge 3 commits into
masterfrom
f-274

Conversation

@sk4zuzu

@sk4zuzu sk4zuzu commented Sep 8, 2026

Copy link
Copy Markdown
Collaborator
  • Disable helper/fw by default
  • Detect and support ufw and firewalld
  • Do not attempt full management, open ports only on a best-effort basis
  • Provide default rules for OpenNebula FEs/HVs

- Disable helper/fw by default
- Detect and support ufw and firewalld
- Do not attempt full management, open ports only on a best-effort basis
- Provide default rules for OpenNebula FEs/HVs

Signed-off-by: Michal Opala <sk4zuzu@gmail.com>
@sk4zuzu
sk4zuzu requested review from dann1 and tinova September 8, 2026 14:18
Signed-off-by: Michal Opala <sk4zuzu@gmail.com>
@sk4zuzu

sk4zuzu commented Sep 9, 2026

Copy link
Copy Markdown
Collaborator Author

@dann1 Hi, I'm thinking maybe "skip: t/f" would be better here than setting "groups.peers: null" to actually skip the rule. WDYT? 🤔

@dann1

dann1 commented Sep 9, 2026

Copy link
Copy Markdown
Collaborator

Hi @sk4zuzu I saw the PR open yesterday. I'll try to review it today/tomorrow. Just gave it a quick overview and it was looking very good. Can't really answer the question now though 😅

@sk4zuzu

sk4zuzu commented Sep 9, 2026

Copy link
Copy Markdown
Collaborator Author

@dann1 Relax 👍🤗 I'll add the "skip" change anyway I think (feels right), we can always revert it before merging.

Signed-off-by: Michal Opala <sk4zuzu@gmail.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Firewall management Document the need to open firewalld service frontend ports (Alma 9 and Redhat derivatives)

2 participants