Find another solution for whitelisting Hetzner API, dns based? #629
Replies: 3 comments
-
@valkenburg-prevue-ch Good catch! At deployment time we can get the IP with |
Beta Was this translation helpful? Give feedback.
-
@valkenburg-prevue-ch The only thing affected is the API IP, and it's probably used for out traffic, and done so by the CCM and CSI, so they will be using the DNS and out traffic for DNS and HTTP is allowed by default, so we should not see any issue, however just in case, I have asked on a Hetzner repo over at hetznercloud/csi-driver#204. |
Beta Was this translation helpful? Give feedback.
-
Ok, Hetzner confirmed that the API IP is just used for out outbound so we're good! |
Beta Was this translation helpful? Give feedback.
Uh oh!
There was an error while loading. Please reload this page.
-
terraform-hcloud-kube-hetzner/locals.tf
Line 120 in 8ab132e
The IP addresses are going to change on 7 March, and in the future will change without further notice and only detectable through dns: https://status.hetzner.com/incident/62839f8e-073a-4159-87a1-b05d093fe689
Beta Was this translation helpful? Give feedback.
All reactions