Bug 1748382
| Summary: | Add puppetmaster service in firewalld to keep the entry persistent across reboots in RHUI 3.0. | ||
|---|---|---|---|
| Product: | Red Hat Update Infrastructure for Cloud Providers | Reporter: | Subhash Mane <smane> |
| Component: | RHUA | Assignee: | RHUI Bug List <rhui-bugs> |
| Status: | CLOSED NOTABUG | QA Contact: | Radek Bíba <rbiba> |
| Severity: | medium | Docs Contact: | |
| Priority: | unspecified | ||
| Version: | 3.0.7 | CC: | carl, mminar |
| Target Milestone: | --- | ||
| Target Release: | --- | ||
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | If docs needed, set a value | |
| Doc Text: | Story Points: | --- | |
| Clone Of: | Environment: | ||
| Last Closed: | 2019-11-13 15:13:50 UTC | Type: | Bug |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
|
Description
Subhash Mane
2019-09-03 13:34:29 UTC
There is a chapter in Administration Guide - Chapter 3. Prerequisites for Installing Red Hat Update Infrastructure - https://access.redhat.com/documentation/en-us/red_hat_update_infrastructure/3.1/html-single/system_administrators_guide/index#prerequisites - that contains table with list of a ports that has to be opened and port 8140 is there. It is not a responsibility of rhui-installer to set these firewalld rules. Martin, if it is not the responsibility of rhui-installer to allow those ports, then why is it creating iptables rules? If it's going to do it, do it correctly with firewalld so it's persistent. You are right that it's not optimal. There is - historically - a lot of puppet modules involved in rhui-installer run, most of them are unchanged puppetlabs forge version where we just want a part of the functionality. A lot of them is not updated any more. We are trying to purge/update/fix them whenever we encounter these during work rhui-installer issues, but we don't plan a total overhaul any time soon for this version of RHUI. That is also one of the reasons why that prerequisite table of ports exist in documentation. |