From b95fa383853b8cd8ebbd6e112b7c3d319157f20a Mon Sep 17 00:00:00 2001 From: denis-tingaikin Date: Mon, 11 Jul 2022 06:47:36 +0300 Subject: [PATCH] check that allow all is fine Signed-off-by: denis-tingaikin --- scripts/aws/aws-start.sh | 25 +++++++++++++------------ 1 file changed, 13 insertions(+), 12 deletions(-) diff --git a/scripts/aws/aws-start.sh b/scripts/aws/aws-start.sh index 42996e0..24a5185 100755 --- a/scripts/aws/aws-start.sh +++ b/scripts/aws/aws-start.sh @@ -26,18 +26,19 @@ eksctl create cluster \ ## Setup security group rules sg=$(aws ec2 describe-security-groups --filter Name=tag:aws:eks:cluster-name,Values=testing --query 'SecurityGroups[0].GroupId' --output text) -### authorize wireguard -aws ec2 authorize-security-group-ingress --group-id $sg --protocol tcp --port 51820 --cidr 0.0.0.0/0 -aws ec2 authorize-security-group-ingress --group-id $sg --protocol udp --port 51820 --cidr 0.0.0.0/0 -### authorize vxlan -aws ec2 authorize-security-group-ingress --group-id $sg --protocol tcp --port 4789 --cidr 0.0.0.0/0 -aws ec2 authorize-security-group-ingress --group-id $sg --protocol udp --port 4789 --cidr 0.0.0.0/0 -### authorize nsmgr-proxy -aws ec2 authorize-security-group-ingress --group-id $sg --protocol tcp --port 5004 --cidr 0.0.0.0/0 -### authorize registry -aws ec2 authorize-security-group-ingress --group-id $sg --protocol tcp --port 5002 --cidr 0.0.0.0/0 -### authorize vl3-ipam -aws ec2 authorize-security-group-ingress --group-id $sg --protocol tcp --port 5006 --cidr 0.0.0.0/0 +aws ec2 authorize-security-group-ingress --group-id $sg --protocol all --port all --cidr 0.0.0.0/0 +# ### authorize wireguard +# aws ec2 authorize-security-group-ingress --group-id $sg --protocol tcp --port 51820 --cidr 0.0.0.0/0 +# aws ec2 authorize-security-group-ingress --group-id $sg --protocol udp --port 51820 --cidr 0.0.0.0/0 +# ### authorize vxlan +# aws ec2 authorize-security-group-ingress --group-id $sg --protocol tcp --port 4789 --cidr 0.0.0.0/0 +# aws ec2 authorize-security-group-ingress --group-id $sg --protocol udp --port 4789 --cidr 0.0.0.0/0 +# ### authorize nsmgr-proxy +# aws ec2 authorize-security-group-ingress --group-id $sg --protocol tcp --port 5004 --cidr 0.0.0.0/0 +# ### authorize registry +# aws ec2 authorize-security-group-ingress --group-id $sg --protocol tcp --port 5002 --cidr 0.0.0.0/0 +# ### authorize vl3-ipam +# aws ec2 authorize-security-group-ingress --group-id $sg --protocol tcp --port 5006 --cidr 0.0.0.0/0 kubectl version --client \ No newline at end of file