-
Story
-
Resolution: Unresolved
-
Undefined
-
None
-
None
-
None
-
None
-
Product / Portfolio Work
-
False
-
-
False
-
2
-
None
-
None
User Story:
Currently, the Security Group of API ext and int LBs allow only access over IPv4 (0.0.0.0/0) to port 6443. We need to add the any-IPv6-CIDR ::/0 to the list of allowed source CIDRs.
Acceptance Criteria:
Description of criteria:
- The Security Group of API ext and int LBs allows access to port 6443 from both IPv4 and IPv6 anywhere CIDRs.
(optional) Out of Scope:
Detail about what is specifically not being delivered in the story
Engineering Details:
- Ingress rule setting code: https://github.com/openshift/installer/blob/72c6cb7cde4aa872790b024d44523559c525c1f3/pkg/asset/manifests/aws/cluster.go#L201-L235
This requires/does not require a design proposal.
This requires/does not require a feature gate.
- depends on
-
CORS-4008 CAPA Dual-Stack Support for unmanaged clusters
-
- In Progress
-