iptables rules for dockerized prometheus stack and swarmiptables rules to block ssh remote forwarded portsiptables: IP alias and port forwardingiptables port forwardingiptables questionA minmal iptables ruleset for a high volume Nginx reverse proxy (or: how to use NOTRACK for http and https)?RHEL 6 Having issues forwarding port 80 to port 8080Configuring iptables on dd-wrt routeriptables port forwarding to server with different portCentos 7 , Master-slave replication iptables?Allowing outgoing connections from Docker Swarm Mode containers with iptables
Do Phineas and Ferb ever actually get busted in real time?
Motorized valve interfering with button?
TGV timetables / schedules?
How is it possible to have an ability score that is less than 3?
Accidentally leaked the solution to an assignment, what to do now? (I'm the prof)
When blogging recipes, how can I support both readers who want the narrative/journey and ones who want the printer-friendly recipe?
What is the offset in a seaplane's hull?
"which" command doesn't work / path of Safari?
Why can't I see bouncing of a switch on an oscilloscope?
Find original functions from a composite function
How to add power-LED to my small amplifier?
I probably found a bug with the sudo apt install function
Is there a familial term for apples and pears?
How did the USSR manage to innovate in an environment characterized by government censorship and high bureaucracy?
The magic money tree problem
How to report a triplet of septets in NMR tabulation?
What do you call something that goes against the spirit of the law, but is legal when interpreting the law to the letter?
Awk syntax, strange variable?
Can I interfere when another PC is about to be attacked?
Why is the design of haulage companies so “special”?
Infinite past with a beginning?
Shell script can be run only with sh command
How old can references or sources in a thesis be?
What is the command to reset a PC without deleting any files
iptables rules for dockerized prometheus stack and swarm
iptables rules to block ssh remote forwarded portsiptables: IP alias and port forwardingiptables port forwardingiptables questionA minmal iptables ruleset for a high volume Nginx reverse proxy (or: how to use NOTRACK for http and https)?RHEL 6 Having issues forwarding port 80 to port 8080Configuring iptables on dd-wrt routeriptables port forwarding to server with different portCentos 7 , Master-slave replication iptables?Allowing outgoing connections from Docker Swarm Mode containers with iptables
.everyoneloves__top-leaderboard:empty,.everyoneloves__mid-leaderboard:empty,.everyoneloves__bot-mid-leaderboard:empty height:90px;width:728px;box-sizing:border-box;
OS: ubuntu
Everything runns in containers (run via docker stack deploy)
2 servers running separate swarm
- server - running grafana + prometheus (ip 1.1.1.1)
- server - running node_exporter + cadvisor (ip 2.2.2.2)
Need to setup IPTABLES:
On 1st server:
iptables -I FORWARD -p tcp --dport 9100 -j DROP
iptables -I FORWARD -s 2.2.2.2. -p tcp --dport 9100 -j ACCEPT
(9100 is node_exporter port)
When node_exporter iptables are setup as above everything looks just ok and I am happy. So I want to setup the same for cadvisor.
iptables -I FORWARD -p tcp --dport 8080 -j DROP
iptables -I FORWARD -s 2.2.2.2. -p tcp --dport 8080 -j ACCEPT
(8080 is cadvisor port)
When its setup iptables for cadvisor as posted above it does not work.
When I set it up again as:
iptables -I FORWARD -p tcp --dport 8080 -j ACCEPT
everything works fine - but I do not want the port to be exposed to the world.
Please help
iptables docker port prometheus
New contributor
Palino1611 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.
add a comment |
OS: ubuntu
Everything runns in containers (run via docker stack deploy)
2 servers running separate swarm
- server - running grafana + prometheus (ip 1.1.1.1)
- server - running node_exporter + cadvisor (ip 2.2.2.2)
Need to setup IPTABLES:
On 1st server:
iptables -I FORWARD -p tcp --dport 9100 -j DROP
iptables -I FORWARD -s 2.2.2.2. -p tcp --dport 9100 -j ACCEPT
(9100 is node_exporter port)
When node_exporter iptables are setup as above everything looks just ok and I am happy. So I want to setup the same for cadvisor.
iptables -I FORWARD -p tcp --dport 8080 -j DROP
iptables -I FORWARD -s 2.2.2.2. -p tcp --dport 8080 -j ACCEPT
(8080 is cadvisor port)
When its setup iptables for cadvisor as posted above it does not work.
When I set it up again as:
iptables -I FORWARD -p tcp --dport 8080 -j ACCEPT
everything works fine - but I do not want the port to be exposed to the world.
Please help
iptables docker port prometheus
New contributor
Palino1611 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.
add a comment |
OS: ubuntu
Everything runns in containers (run via docker stack deploy)
2 servers running separate swarm
- server - running grafana + prometheus (ip 1.1.1.1)
- server - running node_exporter + cadvisor (ip 2.2.2.2)
Need to setup IPTABLES:
On 1st server:
iptables -I FORWARD -p tcp --dport 9100 -j DROP
iptables -I FORWARD -s 2.2.2.2. -p tcp --dport 9100 -j ACCEPT
(9100 is node_exporter port)
When node_exporter iptables are setup as above everything looks just ok and I am happy. So I want to setup the same for cadvisor.
iptables -I FORWARD -p tcp --dport 8080 -j DROP
iptables -I FORWARD -s 2.2.2.2. -p tcp --dport 8080 -j ACCEPT
(8080 is cadvisor port)
When its setup iptables for cadvisor as posted above it does not work.
When I set it up again as:
iptables -I FORWARD -p tcp --dport 8080 -j ACCEPT
everything works fine - but I do not want the port to be exposed to the world.
Please help
iptables docker port prometheus
New contributor
Palino1611 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.
OS: ubuntu
Everything runns in containers (run via docker stack deploy)
2 servers running separate swarm
- server - running grafana + prometheus (ip 1.1.1.1)
- server - running node_exporter + cadvisor (ip 2.2.2.2)
Need to setup IPTABLES:
On 1st server:
iptables -I FORWARD -p tcp --dport 9100 -j DROP
iptables -I FORWARD -s 2.2.2.2. -p tcp --dport 9100 -j ACCEPT
(9100 is node_exporter port)
When node_exporter iptables are setup as above everything looks just ok and I am happy. So I want to setup the same for cadvisor.
iptables -I FORWARD -p tcp --dport 8080 -j DROP
iptables -I FORWARD -s 2.2.2.2. -p tcp --dport 8080 -j ACCEPT
(8080 is cadvisor port)
When its setup iptables for cadvisor as posted above it does not work.
When I set it up again as:
iptables -I FORWARD -p tcp --dport 8080 -j ACCEPT
everything works fine - but I do not want the port to be exposed to the world.
Please help
iptables docker port prometheus
iptables docker port prometheus
New contributor
Palino1611 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.
New contributor
Palino1611 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.
edited 2 days ago
Leo
1,410415
1,410415
New contributor
Palino1611 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.
asked Apr 4 at 9:34
Palino1611Palino1611
62
62
New contributor
Palino1611 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.
New contributor
Palino1611 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.
Palino1611 is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.
add a comment |
add a comment |
0
active
oldest
votes
Your Answer
StackExchange.ready(function()
var channelOptions =
tags: "".split(" "),
id: "2"
;
initTagRenderer("".split(" "), "".split(" "), channelOptions);
StackExchange.using("externalEditor", function()
// Have to fire editor after snippets, if snippets enabled
if (StackExchange.settings.snippets.snippetsEnabled)
StackExchange.using("snippets", function()
createEditor();
);
else
createEditor();
);
function createEditor()
StackExchange.prepareEditor(
heartbeatType: 'answer',
autoActivateHeartbeat: false,
convertImagesToLinks: true,
noModals: true,
showLowRepImageUploadWarning: true,
reputationToPostImages: 10,
bindNavPrevention: true,
postfix: "",
imageUploader:
brandingHtml: "Powered by u003ca class="icon-imgur-white" href="https://imgur.com/"u003eu003c/au003e",
contentPolicyHtml: "User contributions licensed under u003ca href="https://creativecommons.org/licenses/by-sa/3.0/"u003ecc by-sa 3.0 with attribution requiredu003c/au003e u003ca href="https://stackoverflow.com/legal/content-policy"u003e(content policy)u003c/au003e",
allowUrls: true
,
onDemand: true,
discardSelector: ".discard-answer"
,immediatelyShowMarkdownHelp:true
);
);
Palino1611 is a new contributor. Be nice, and check out our Code of Conduct.
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
StackExchange.ready(
function ()
StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fserverfault.com%2fquestions%2f961462%2fiptables-rules-for-dockerized-prometheus-stack-and-swarm%23new-answer', 'question_page');
);
Post as a guest
Required, but never shown
0
active
oldest
votes
0
active
oldest
votes
active
oldest
votes
active
oldest
votes
Palino1611 is a new contributor. Be nice, and check out our Code of Conduct.
Palino1611 is a new contributor. Be nice, and check out our Code of Conduct.
Palino1611 is a new contributor. Be nice, and check out our Code of Conduct.
Palino1611 is a new contributor. Be nice, and check out our Code of Conduct.
Thanks for contributing an answer to Server Fault!
- Please be sure to answer the question. Provide details and share your research!
But avoid …
- Asking for help, clarification, or responding to other answers.
- Making statements based on opinion; back them up with references or personal experience.
To learn more, see our tips on writing great answers.
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
StackExchange.ready(
function ()
StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fserverfault.com%2fquestions%2f961462%2fiptables-rules-for-dockerized-prometheus-stack-and-swarm%23new-answer', 'question_page');
);
Post as a guest
Required, but never shown
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown