第 9 章 Visualizing external entities
Visualizing external entities is a Technology Preview feature only. Technology Preview features are not supported with Red Hat production service level agreements (SLAs) and might not be functionally complete. Red Hat does not recommend using them in production. These features provide early access to upcoming product features, enabling customers to test functionality and provide feedback during the development process.
For more information about the support scope of Red Hat Technology Preview features, see Technology Preview Features Support Scope.
Understanding the interactions between your cluster and external entities is essential for incident response and network policy management. With the Visualizing external entities feature, you can view the external IP addresses that interact with your cluster.
You can view external entities in the Network Graph by selecting the External Entities graph node or query external entities by using the API.
Visualizing external entities is an opt-in feature that is disabled by default. To enable this feature, you must enable external IP collection in Central and secured clusters, as described in the following sections.
9.1. Enabling external IP collection in Central 复制链接链接已复制到粘贴板!
There are two environmental variables that control the collection of external IP in Central: ROX_EXTERNAL_IPS and ROX_NETWORK_GRAPH_EXTERNAL_IPS.
You must enable ROX_EXTERNAL_IPS in Central to enable external IP collection and to query external entities by using the API. After that, you can use ROX_NETWORK_GRAPH_EXTERNAL_IPS to display collected external IPs in the Network Graph.
Procedure
If you installed RHACS by using the RHACS Operator, insert the following customization in the Central custom resource definition (CRD):
spec: customize: envVars: - name: ROX_EXTERNAL_IPS1 value: 'true'- 1
- Additionally, you can also specify
ROX_NETWORK_GRAPH_EXTERNAL_IPS.
If you installed RHACS by using Helm, add the following annotations to your
values-public.yamlfile:customize: # Extra environment variables for all containers in all objects. envVars: ROX_EXTERNAL_IPS: “true”1 - 1
- Additionally, you can also specify
ROX_NETWORK_GRAPH_EXTERNAL_IPS.