|
@@ -195,7 +195,7 @@ data "template_cloudinit_config" "cloud-init" {
|
|
|
# Summary:
|
|
|
# Ingress:
|
|
|
# tcp/8000 - Splunk Web - vpc-access, legacy openvpn, legacy bastion
|
|
|
-# tcp/8089 - Splunk API - vpc-access, legacy openvpn, legacy bastion
|
|
|
+# tcp/8089 - Splunk API - vpc-access, legacy openvpn, legacy bastion, vpc-splunk, vpc-private-services
|
|
|
# tcp/8089 - Splunk API + IDX Discovery - Entire VPC + var.splunk_legacy_cidr
|
|
|
# tcp/8089 - MOOSE ONLY - 10.0.0.0/8
|
|
|
# Egress:
|
|
@@ -236,7 +236,7 @@ resource "aws_security_group_rule" "splunk-api-in" {
|
|
|
from_port = 8089
|
|
|
to_port = 8089
|
|
|
protocol = "tcp"
|
|
|
- cidr_blocks = toset(concat(var.splunk_legacy_cidr, [ var.vpc_cidr ], var.cidr_map["vpc-access"], var.cidr_map["vpc-private-services"]))
|
|
|
+ cidr_blocks = toset(concat(var.splunk_legacy_cidr, [ var.vpc_cidr ], var.cidr_map["vpc-access"], var.cidr_map["vpc-private-services"], var.cidr_map["vpc-splunk"]))
|
|
|
security_group_id = aws_security_group.cluster_master_security_group.id
|
|
|
}
|
|
|
|