Restrict Minion Connections by IP Range

21 views
Skip to first unread message

Kernel Panic

unread,
Aug 31, 2015, 12:47:05 PM8/31/15
to Salt-users
Hi there guys-

Do you know if there is a way ( by master configuration ) to restrict the minions connection by IP range? I mean, accept connection only from 10.10.0.0/16 network? or do I have to write a firewall rule to accomplish that?

Thank for your time and support.

Regards


Arnold Bechtoldt

unread,
Aug 31, 2015, 1:17:22 PM8/31/15
to salt-...@googlegroups.com
I recommend using a *real* firewall for this. It might be sufficient to
use ferm:

* http://ferm.foo-projects.org/
* https://github.com/bechtoldt/saltstack-ferm-formula


Arnold

--
+arnoldbechtoldt • arnoldB@IRC • bechtoldt@GH • arbe.io
> --
> You received this message because you are subscribed to the Google
> Groups "Salt-users" group.
> To unsubscribe from this group and stop receiving emails from it, send
> an email to salt-users+...@googlegroups.com
> <mailto:salt-users+...@googlegroups.com>.
> For more options, visit https://groups.google.com/d/optout.
0xE2356889.asc
signature.asc
Reply all
Reply to author
Forward
0 new messages