system-config/manifests
Clark Boylan 5f876310ce Simplify elasticsearch firewall rules
Because we are no longer running elasticsearch daemons on
logstash-workers to perform indexing (and instead use http to the
elasticsearch cluster data nodes) and because kibana also speaks the
http API and doesn't join the cluster from logstash.openstack.org we
don't need to allow the full mesh of connectivity over ports 9200 to
9400.

Remove these unneeded firewall rules as the next step is converting to
the new dns resolving firewall rule builder parameter in
puppet-iptables.

Change-Id: If79bab6dc0b510c5589b83c943458e8580eb8092
2017-12-14 13:44:16 -08:00
..
site.pp Simplify elasticsearch firewall rules 2017-12-14 13:44:16 -08:00