Uploaded image for project: 'OpenShift Installer'
  1. OpenShift Installer
  2. CORS-4143

Allow configuring IPv6 source CIDR for NodePort Service ingress rule

XMLWordPrintable

    • Icon: Story Story
    • Resolution: Unresolved
    • Icon: Undefined Undefined
    • None
    • None
    • None
    • None
    • None
    • Installer Sprint 274, Installer Sprint 275, Installer Sprint 276, Installer Sprint 277, Installer Sprint 278

      User Story:

      As a (user persona), when the cluster has IPv6 or dual-stack enabled, I want to be able to define IPv6-family source CIDRs for NodePort Service ingress rules on Security Groups (SGs) attached to cluster nodes. Currently, only IPv4 blocks can be specified.

       

      Why we need this? See motivation:

      Acceptance Criteria:

      Description of criteria:

      • A network specification field (e.g. awscluster.spec.network.nodePortIngressRuleIpv6CidrBlocks) to define source CIDR blocks for NodePort Service ingress rule.
      • If the field is left empty, CAPA should default to all IPv6 range (i.e. ::/0)
      • Alternatively, we can extend the existing field  awscluster.spec.network.NodePortIngressRuleCidrBlocks to accept IPv6 CIDR.

      (optional) Out of Scope:

      Detail about what is specifically not being delivered in the story

      Engineering Details:

      This requires/does not require a design proposal.
      This requires/does not require a feature gate.

              rh-ee-thvo Thuan Vo
              rh-ee-thvo Thuan Vo
              None
              None
              Yunfei Jiang Yunfei Jiang
              None
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated: