Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Restrict and harden Azure security groups policy for monitoring (exporters in particular) #195

Open
ayoub-belarbi opened this issue Sep 23, 2019 · 1 comment
Labels

Comments

@ayoub-belarbi
Copy link
Contributor

ayoub-belarbi commented Sep 23, 2019

Right now we allow inbound access from all ips to the exporters in Azure, we should improve that to only allow access from other nodes since we don't need access to the exporters from outside world. Only the monitoring node need that.

Example can be found here:

source_address_prefix = "*"

@NiteshSngh
Copy link

Try to extend the range of ha-exporter from 9002 to further.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

No branches or pull requests

3 participants