Skip to content

Commit 651f807

Browse files
committed
only open specific ports
Signed-off-by: Jianguo Ma <[email protected]>
1 parent 8b17578 commit 651f807

File tree

2 files changed

+52
-5
lines changed

2 files changed

+52
-5
lines changed

pom.xml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -20,7 +20,7 @@
2020

2121
<groupId>com.ibm.websphere.azure</groupId>
2222
<artifactId>azure.websphere-traditional.cluster</artifactId>
23-
<version>1.3.1</version>
23+
<version>1.3.2</version>
2424

2525
<parent>
2626
<groupId>com.microsoft.azure.iaas</groupId>

src/main/scripts/install.sh

Lines changed: 51 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -15,6 +15,21 @@
1515
# limitations under the License.
1616

1717
create_dmgr_profile() {
18+
# Open ports for deployment manager
19+
firewall-cmd --zone=public --add-port=9060/tcp --permanent
20+
firewall-cmd --zone=public --add-port=9043/tcp --permanent
21+
firewall-cmd --zone=public --add-port=9809/tcp --permanent
22+
firewall-cmd --zone=public --add-port=7277/tcp --permanent
23+
firewall-cmd --zone=public --add-port=9402/tcp --permanent
24+
firewall-cmd --zone=public --add-port=9403/tcp --permanent
25+
firewall-cmd --zone=public --add-port=9352/tcp --permanent
26+
firewall-cmd --zone=public --add-port=9632/tcp --permanent
27+
firewall-cmd --zone=public --add-port=9100/tcp --permanent
28+
firewall-cmd --zone=public --add-port=9401/tcp --permanent
29+
firewall-cmd --zone=public --add-port=8879/tcp --permanent
30+
31+
firewall-cmd --reload
32+
1833
profileName=$1
1934
hostName=$2
2035
nodeName=$3
@@ -109,6 +124,42 @@ create_cluster() {
109124
}
110125

111126
create_custom_profile() {
127+
# Open ports for federated application server
128+
firewall-cmd --zone=public --add-port=9080/tcp --permanent
129+
firewall-cmd --zone=public --add-port=9443/tcp --permanent
130+
firewall-cmd --zone=public --add-port=2809/tcp --permanent
131+
firewall-cmd --zone=public --add-port=9405/tcp --permanent
132+
firewall-cmd --zone=public --add-port=9406/tcp --permanent
133+
firewall-cmd --zone=public --add-port=9353/tcp --permanent
134+
firewall-cmd --zone=public --add-port=9633/tcp --permanent
135+
firewall-cmd --zone=public --add-port=5558/tcp --permanent
136+
firewall-cmd --zone=public --add-port=5578/tcp --permanent
137+
firewall-cmd --zone=public --add-port=9100/tcp --permanent
138+
firewall-cmd --zone=public --add-port=9404/tcp --permanent
139+
firewall-cmd --zone=public --add-port=7276/tcp --permanent
140+
firewall-cmd --zone=public --add-port=7286/tcp --permanent
141+
firewall-cmd --zone=public --add-port=5060/tcp --permanent
142+
firewall-cmd --zone=public --add-port=5061/tcp --permanent
143+
firewall-cmd --zone=public --add-port=8880/tcp --permanent
144+
145+
# Open ports for node agent server
146+
firewall-cmd --zone=public --add-port=2810/tcp --permanent
147+
firewall-cmd --zone=public --add-port=9201/tcp --permanent
148+
firewall-cmd --zone=public --add-port=9202/tcp --permanent
149+
firewall-cmd --zone=public --add-port=9354/tcp --permanent
150+
firewall-cmd --zone=public --add-port=9626/tcp --permanent
151+
firewall-cmd --zone=public --add-port=7272/tcp --permanent
152+
firewall-cmd --zone=public --add-port=5001/tcp --permanent
153+
firewall-cmd --zone=public --add-port=5000/tcp --permanent
154+
firewall-cmd --zone=public --add-port=9900/tcp --permanent
155+
firewall-cmd --zone=public --add-port=9901/tcp --permanent
156+
firewall-cmd --zone=public --add-port=8878/tcp --permanent
157+
firewall-cmd --zone=public --add-port=7061/tcp --permanent
158+
firewall-cmd --zone=public --add-port=11001/tcp --permanent
159+
firewall-cmd --zone=public --add-port=11002/tcp --permanent
160+
161+
firewall-cmd --reload
162+
112163
profileName=$1
113164
hostName=$2
114165
nodeName=$3
@@ -191,10 +242,6 @@ if [ ${result} = Unentitled ]; then
191242
exit 1
192243
fi
193244

194-
# Turn off firewall
195-
systemctl stop firewalld
196-
systemctl disable firewalld
197-
198245
# Get tWAS installation properties
199246
source /datadrive/virtualimage.properties
200247

0 commit comments

Comments
 (0)