Merge pull request #77117 from mm4tt/automated-cherry-pick-of-#76773-upstream-release-1.14

Automated cherry pick of #76773: Create the "internal" firewall rule for kubemark master.
pull/564/head
Kubernetes Prow Robot 2019-05-02 14:00:49 -07:00 committed by GitHub
commit 8e8dea6d8a
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 11 additions and 0 deletions

View File

@ -102,6 +102,13 @@ function create-master-instance-with-resources {
--target-tags "${MASTER_TAG}" \
--allow "tcp:443" &
run-gcloud-compute-with-retries firewall-rules create "${MASTER_NAME}-internal" \
--project "${PROJECT}" \
--network "${NETWORK}" \
--source-ranges "10.0.0.0/8" \
--target-tags "${MASTER_TAG}" \
--allow "tcp:1-2379,tcp:2382-65535,udp:1-65535,icmp" &
wait
}
@ -136,6 +143,10 @@ function delete-master-instance-and-resources {
--project "${PROJECT}" \
--quiet || true
gcloud compute firewall-rules delete "${MASTER_NAME}-internal" \
--project "${PROJECT}" \
--quiet || true
if [ "${SEPARATE_EVENT_MACHINE:-false}" == "true" ]; then
gcloud compute instances delete "${EVENT_STORE_NAME}" \
"${GCLOUD_COMMON_ARGS[@]}" || true