Configure the Firewall

This topic provides guidelines for restricting network access and managing iptables rules.

Restricting Network Access

This section provides basic guidance on setting up a firewall around your Eucalyptus components. It is not intended to be exhaustive.

On the Cloud Controller (CLC), Walrus, and Storage Controller (SC), allow for the following jGroups traffic:

On the UFS, allow the following connections:

On the CLC, allow the following connections:

On the CC, make sure that all firewall rules are compatible with the dynamic changes performed by Eucalyptus, described in the section below. Also allow the following connections:

On OSG, allow the following connections:

On Walrus, allow the following connections:

On the SC, allow the following connections:

On the NC, allow the following connections:

x