-
Notifications
You must be signed in to change notification settings - Fork 1.2k
VR: add bind-interfaces to /etc/dnsmasq.d/cloud.conf #10739
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
VR: add bind-interfaces to /etc/dnsmasq.d/cloud.conf #10739
Conversation
Codecov ReportAll modified and coverable lines are covered by tests ✅
Additional details and impacted files@@ Coverage Diff @@
## 4.19 #10739 +/- ##
=========================================
Coverage 15.17% 15.17%
- Complexity 11332 11333 +1
=========================================
Files 5415 5415
Lines 474893 474893
Branches 57920 57920
=========================================
+ Hits 72046 72049 +3
+ Misses 394792 394790 -2
+ Partials 8055 8054 -1
Flags with carried forward coverage won't be shown. Click here to find out more. ☔ View full report in Codecov by Sentry. 🚀 New features to boost your workflow:
|
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
clgtm
@blueorangutan package |
@weizhouapache a [SL] Jenkins job has been kicked to build packages. It will be bundled with KVM, XenServer and VMware SystemVM templates. I'll keep you posted as I make progress. |
Packaging result [SF]: ✔️ el8 ✔️ el9 ✔️ debian ✔️ suse15. SL-JID 13096 |
[SF] Trillian Build Failed (tid-13045) |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
lgtm. Patch works as expected.
Before
$ netstat -ntlp | grep 53
tcp 0 0 0.0.0.0:53 0.0.0.0:* LISTEN 2696/dnsmasq
tcp6 0 0 :::53 :::* LISTEN 2696/dnsmasq
After
$ netstat -ntlp | grep 53
tcp 0 0 127.0.0.1:53 0.0.0.0:* LISTEN 57227/dnsmasq
tcp 0 0 172.30.0.2:53 0.0.0.0:* LISTEN 57227/dnsmasq
Description
This PR fixes #10733
prior to this change, dnsmasq listens on
0.0.0.0:53
, so other services (e.g haproxy) cannot use port 53 of public IPs.with this change, dnsmasq listens only on the guest interface
Types of changes
Feature/Enhancement Scale or Bug Severity
Feature/Enhancement Scale
Bug Severity
Screenshots (if appropriate):
How Has This Been Tested?
How did you try to break this feature and the system with this change?