-
Bug
-
Resolution: Done-Errata
-
Critical
-
None
-
4.16.0, 4.17.0
Description of problem:
When publish: internal, bootstrap SSH rules are still open to public internet (0.0.0.0/0) instead of restricted to the machine cidr.
Version-Release number of selected component (if applicable):
How reproducible:
all private clusters
Steps to Reproduce:
1. set publish: internal in installconfig 2. inspect ssh rule 3.
Actual results:
ssh is open to public internet
Expected results:
should be restricted to machine network
Additional info:
- blocks
-
OCPBUGS-34427 [AWS CAPI Install] SSH on private clusters is open to public internet
- Closed
- is cloned by
-
OCPBUGS-34427 [AWS CAPI Install] SSH on private clusters is open to public internet
- Closed
- links to
-
RHEA-2024:3718 OpenShift Container Platform 4.17.z bug fix update