Open
Milestone

Improve cluster network security

Currently, the entire cluster is open, from a networking perspective. All containers can communicate with each other, and freely with the outside world. While containers do provide isolation from the host and do a good job of isolating processes from each other and limiting open ports, the containers all have egress and therefore network access to the host network, as well as the NAS and all other system components that are not even containerized, and access to all ports on all containers is not needed.

  • Work items 6
  • Merge requests 0
  • Participants 1
  • Labels 1
Loading
Loading
Loading
Loading
33% complete
33%
Start date
No start date
None
Due date
No due date
6
Work items 6 New issue
Open: 4 Closed: 2
0
Merge requests 0
Open: 0 Closed: 0 Merged: 0
0
Releases
None
Reference: palpantlab/infra%"Improve cluster network security"