RHCOS enabled locations in Sydney
The following network requirements are for outbound connectivity for Red Hat Enterprise Linux (RHEL) and Red Hat CoreOS (RHCOS) hosts for use with Red Hat CoreOS enabled locations in the Sydney (au-syd
) region.
The type of location that you create dictates the type of operating systems that can run on your hosts. If your location is RHCOS enabled, then you can attach hosts that are running either RHEL and RHCOS. If your location isn't RHCOS enabled, then you can attach only hosts that are running RHEL. You can check whether your location is RHCOS enabled. For more information about operating system support, see Planning your operating system.
You can verify your host setup with the satellite-host-check
script. For more information, see Checking your host setup.
You can download a copy of these requirements.
Review the following outbound network requirements for RHEL and RHCOS hosts for use with RHCOS enabled locations in the Sydney (au-syd
) region.
- Allow access to Red Hat network time protocol (NTP) servers.
-
- Destination hostnames:
0.rhel.pool.ntp.org
,1.rhel.pool.ntp.org
,2.rhel.pool.ntp.org
,3.rhel.pool.ntp.org
- Protocol and ports: Allow NTP protocol and provide UDP on port 123
- Destination hostnames:
-
If you don't want to use Red Hat network time protocol (NTP) servers, you can instead define a custom NTP server for your RHCOS hosts.
- Allow hosts to communicate with Red Hat Container Registry.
-
Allow your hosts to access the required sites for OpenShift Container Platform. For more information, see Configuring your firewall.
- Allow control plane nodes to communicate with the management plane.
-
- Destination IP addresses: 168.1.27.26,130.198.65.146,135.90.87.90
- Destination hostnames:
c114.au-syd.satellite.cloud.ibm.com
,c114-1.au-syd.satellite.cloud.ibm.com
,c114-2.au-syd.satellite.cloud.ibm.com
,c114-3.au-syd.satellite.cloud.ibm.com
,c114-e.au-syd.satellite.cloud.ibm.com
- Protocol and ports: TCP 30000 - 32767
- Allow hosts to be attached to a location and assigned to services in the location.
-
- Destination IP addresses: 130.198.66.26, 135.90.69.66, 168.1.8.195, 104.94.220.125, 104.94.221.125, 104.94.222.133, 104.94.223.133, 104.96.176.125, 104.96.177.125, 104.96.178.127, 104.96.179.127, 104.96.180.124, 104.96.181.124
- Destination hostnames:
origin.au-syd.containers.cloud.ibm.com
andbootstrap.au-syd.containers.cloud.ibm.com
- Protocol and ports: HTTPS 443
- Allow hosts to communicate with IBM Cloud Container Registry.
-
- Destination IP addresses: N/A
- Destination hostnames:
icr.io
,registry.bluemix.net
,au.icr.io
,registry.au-syd.bluemix.net
- Protocol and ports: HTTPS 443
- Allow Link tunnel clients to connect to the Link tunnel server endpoint.
-
- Destination IP addresses: 130.198.75.74, 135.90.67.154, 168.1.201.194
- Destination hostnames:
c-01-ws.au-syd.link.satellite.cloud.ibm.com
,api.link.satellite.cloud.ibm.com
- Protocol and ports: HTTPS 443
-
You can find the hostnames or IP addresses by running the
dig c-<XX>-ws.au-syd.link.satellite.cloud.ibm.com +short
command. Replace<XX>
with01
,02
, and so on, until no DNS results are returned. - Optional: Allow hosts to communicate with IBM Cloud Log Analysis.
-
- Destination IP addresses and hostnames: IBM Cloud Log Analysis endpoints
- Protocol and ports: HTTPS 443
-
If you plan to use IBM Cloud Log Analysis in your Red Hat OpenShift on IBM Cloud Satellite clusters, then include these network options.
- Optional: Allow hosts to communicate with IBM Cloud Monitoring.
-
- Destination IP addresses and hostnames: Monitoring endpoints
- Protocol and ports: HTTPS 443 and 6443
-
If you plan to use Monitoring in your Red Hat OpenShift on IBM Cloud Satellite clusters, then include these network options.