1.2. Network configuration
Configure your network settings to allow the following connections:
Hub cluster:
- Outbound connectivity to cloud provider’s API.
-
Outbound connectivity to the Kubernetes API server of the provisioned
ManagedClusteron port 6443. - Outbound connectivity from the Hub to the channel source, including Github, Object Store, and Helm repository. This is only required when you are using application lifecycle to connect to these sources.
-
Outbound and inbound connectivity to the
WorkManagerservice route on the ManagedCluster on port 443. -
Inbound connectivity to the hub cluster’s kube API server from the
ManagedClusteron port 6443. - Inbound connectivity for post-commit hook from GitHub to the Hub. This setting is only required when you use certain application management functions.
Managed cluster:
- Inbound connectivity to the Kubernetes API server from the hub cluster on port 6443.
-
Inbound connectivity to
WorkManagerservice endpoint from the hub cluster on port 443. - Outbound connectivity to the hub cluster’s Kubernetes API server on port 6443.
- Outbound connectivity from the Hub to channel source, including Github, Object Store, and Helm repository. This is only required when you are using application lifecycle to connect to these sources.