Commit Graph

60 Commits

Author SHA1 Message Date
Peter Robinson
595c222baf kojibuilder: add ppc hub to firewall 2015-10-13 03:02:45 +00:00
Stephen Smoogen
3be0ca58fa and we have nagios-external 2015-09-01 23:05:58 +00:00
Kevin Fenzi
096a7204a2 Fix out ntp setup to use 5 ip's from the rhel.pool.ntp.org pool. 2015-08-31 16:32:10 +00:00
Ralph Bean
08ca54945c Copy prod fedmsg iptables loop to staging. 2015-08-18 03:47:44 +00:00
Kevin Fenzi
371b97ead5 Fix some typos 2015-08-15 15:27:50 +00:00
Kevin Fenzi
f28aad573d Use fas-all ips instead of name, as dns may not yet be on at boot. 2015-08-15 15:16:03 +00:00
Mikolaj Izdebski
7025200095 Support IPv6 on jenkins 2015-06-26 20:59:11 +00:00
Mikolaj Izdebski
4e593519cc Use custom iptables config for jenkins 2015-06-26 20:47:11 +00:00
Ralph Bean
07667d7ea2 YATypofix. 2015-06-16 19:44:52 +00:00
Ralph Bean
c680e56767 Restore dynamic fedmsg endpoints experiment.
Revert "Hold off on that.."

This reverts commit 9f5fd276e2.
2015-06-16 19:21:50 +00:00
Ralph Bean
9f5fd276e2 Hold off on that..
This reverts commit 8df675b378.
2015-06-16 18:58:12 +00:00
Ralph Bean
8df675b378 Toy with dynamically generating fedmsg endpoint config. 2015-06-16 18:57:41 +00:00
Kevin Fenzi
747ff82f95 Add ip address of new c-mode filer so we can actually mount things from it. 2015-06-09 16:59:37 +00:00
Till Maas
e3606ba68e Use more https URLs where possible 2015-06-04 17:20:06 +02:00
Kevin Fenzi
fd04066cf7 Try these ips. 2015-05-03 15:29:09 +00:00
Kevin Fenzi
40b27e57b7 Add serverbeach09 iptables with snat for ns-sb01 2015-05-03 15:19:06 +00:00
Stephen Smoogen
7a0536d0f6 add backup01 files 2015-05-01 20:39:49 +00:00
Dennis Gilmore
43c6b77415 allow builders to talk to compose-x86-01 2015-04-05 13:58:19 +00:00
Dennis Gilmore
0bb6ee731b admin is not admin.phx2 2015-03-24 17:05:20 +00:00
Dennis Gilmore
72f28bac6e add iptables rules so fasclient and 2 facter auth can work 2015-03-24 17:02:13 +00:00
Kevin Fenzi
a424b52e2e Fix vnc on new cloud 2015-03-07 17:30:13 +00:00
Kevin Fenzi
d934cf11ef Fold in new private cloud work from today. Gets things pretty working. 2015-02-28 03:15:15 +00:00
Stephen Smoogen
dfb38ce20f and we add another host on the rebuild pile. 2015-02-18 21:44:31 +00:00
Stephen Smoogen
f77a4809d3 oh silly me.. {{}} matter 2015-02-18 20:59:14 +00:00
Stephen Smoogen
251f52c283 and we have the starts for sb06 2015-02-18 20:43:43 +00:00
Kevin Fenzi
b048ff3883 Add custom serverbeach07 iptables. Will need this for the others too with their secondary ips 2015-02-18 17:19:43 +00:00
Kevin Fenzi
92e8a29f05 Stay 6 2015-02-06 21:39:22 +00:00
Kevin Fenzi
d4248510ab Clean up ipv4 specific stuff and make custom require different rules from ipv4 2015-02-06 21:29:14 +00:00
Kevin Fenzi
80caa9c7bf Fix missing comment 2015-02-06 21:26:02 +00:00
Kevin Fenzi
b6c9760b47 Move this comment into the conditional so it doesn't oddly show up on every host 2015-02-06 21:23:03 +00:00
Kevin Fenzi
8622c15919 Add initial ip6tables to base. 2015-02-06 21:20:11 +00:00
Kevin Fenzi
32a6e5dc7c Adjust firewall to only block phx2 staging hosts in phx2. 2015-01-27 20:46:09 +00:00
Ralph Bean
406de1f785 Do the same for the staging iptables rule. 2015-01-06 20:24:12 +00:00
Ralph Bean
66e4d2f191 Still more whitespace. 2015-01-06 14:29:06 +00:00
Kevin Fenzi
1ba86f9c29 Fix up some spaceing here hopefully. 2014-12-18 15:36:49 +00:00
Ralph Bean
65d2277a3f Let it go... let it goooo.. 2014-12-17 20:23:20 +00:00
Ralph Bean
b3f8810a1d Remove newline. 2014-12-17 20:12:44 +00:00
Ralph Bean
2751db995c First stab at /etc/system_identification. 2014-12-17 20:03:34 +00:00
Stephen Smoogen
663cb1a40c move from log02 to log01 2014-12-06 18:37:27 +00:00
Ralph Bean
1e49aa493d Remove all accelerate-mode knobs and toggles now that pipelining is a go. 2014-11-12 19:15:06 +00:00
Kevin Fenzi
059bed31b9 Still whitespace change o kojibuilder iptables to test last commit 2014-11-08 17:11:25 +00:00
Ralph Bean
2e60797ef4 New "staging-friendly" group to be exempted from staging firewall ban. 2014-10-13 18:22:24 +00:00
Kevin Fenzi
6fb0963909 Drpo these forwarding rules now that we have the bridge workaround. 2014-10-08 22:16:46 +00:00
Kevin Fenzi
e2c4fd4d3d Try nuking the iptables hashlimit rules on coloamer and switch in pam_shield. 2014-10-08 20:50:57 +00:00
Dennis Gilmore
3f08b61023 allow outbound http and https to the compose box from the builders 2014-08-21 17:06:40 +00:00
Dennis Gilmore
f797aad45c allow traffic on virbr0 2014-08-18 17:36:07 +00:00
Ralph Bean
20344c943b Back to our explicit IP. 2014-08-18 16:09:48 +00:00
Ralph Bean
d530e7da49 Some comments. 2014-08-18 16:08:56 +00:00
Ralph Bean
056d0f22f9 The Internet seems to think I should do this. 2014-08-18 16:05:44 +00:00
Ralph Bean
b547198a95 Ban staging from prod. 2014-08-18 15:52:05 +00:00