Bug 1877804 - Include 123/udp port as a requirements for both UPI and IPI deployments
Summary: Include 123/udp port as a requirements for both UPI and IPI deployments
Keywords:
Status: NEW
Alias: None
Product: OpenShift Container Platform
Classification: Red Hat
Component: Documentation
Version: 4.6.z
Hardware: Unspecified
OS: Unspecified
low
low
Target Milestone: ---
: 4.5.z
Assignee: Jason Boxman
QA Contact: zhaozhanqi
Vikram Goyal
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2020-09-10 13:26 UTC by Robert Sandu
Modified: 2021-07-08 06:30 UTC (History)
2 users (show)

Fixed In Version:
Doc Type: If docs needed, set a value
Doc Text:
Clone Of:
Environment:
Last Closed:
Target Upstream Version:


Attachments (Terms of Use)

Description Robert Sandu 2020-09-10 13:26:02 UTC
Document URL: https://docs.openshift.com/container-platform/4.5/installing/installing_vsphere/installing-restricted-networks-vsphere.html#installation-network-user-infra_installing-restricted-networks-vsphere

Section Number and Name: Networking requirements for user-provisioned infrastructure

Describe the issue: 123/udp port is missing from the required list of ports of IPI/UPI deployments.

Suggestions for improvement: 123/udp is required for both IPI and UPI deployments and should be included as part of the "Networking requirements for user-provisioned infrastructure" section of the documentation.

Comment 4 Jason Boxman 2020-10-08 03:21:06 UTC
Hi Robert,

So I wonder if mentioning NTP might actually make the most sense in this existing page:

https://docs.openshift.com/container-platform/4.5/installing/install_config/configuring-firewall.html

The page you link to covers requirements for the nodes that form the cluster, but not resources external to the cluster.

Comment 5 Robert Sandu 2020-10-08 07:09:14 UTC
Hi Jason.

> The page you link to covers requirements for the nodes that form the cluster, but not resources external to the cluster.

Clusters deployed in restricted environments use external (NTP server) resources by default. In this context, docs should either highlight 123/TCP as requirement or point out that chony config should updated in restricted environments to point to internal NTP servers.


Note You need to log in before you can comment on or make changes to this bug.