allow scans from nessus to all ports in gstg and gprd

parent 20900098
...@@ -21,6 +21,7 @@ variable "bootstrap_script_version" { ...@@ -21,6 +21,7 @@ variable "bootstrap_script_version" {
# #
# 10.216.x.x: all of gprd # 10.216.x.x: all of gprd
# 10.250.7.x: ops runner # 10.250.7.x: ops runner
# 10.250.8.11/32: nessus scanner
# 10.250.10.x: chatops runner # 10.250.10.x: chatops runner
# 10.250.12.x: release runner # 10.250.12.x: release runner
# 10.12.0.0/14: pod address range in gitlab-ops for runners # 10.12.0.0/14: pod address range in gitlab-ops for runners
...@@ -28,7 +29,7 @@ variable "bootstrap_script_version" { ...@@ -28,7 +29,7 @@ variable "bootstrap_script_version" {
variable "internal_subnets" { variable "internal_subnets" {
type = "list" type = "list"
default = ["10.216.0.0/13", "10.250.7.0/24", "10.250.10.0/24", "10.250.12.0/24", "10.12.0.0/14"] default = ["10.216.0.0/13", "10.250.7.0/24", "10.250.8.11/32", "10.250.10.0/24", "10.250.12.0/24", "10.12.0.0/14"]
} }
variable "other_monitoring_subnets" { variable "other_monitoring_subnets" {
......
...@@ -21,6 +21,7 @@ variable "bootstrap_script_version" { ...@@ -21,6 +21,7 @@ variable "bootstrap_script_version" {
# #
# 10.224.x.x: all of gstg # 10.224.x.x: all of gstg
# 10.250.7.x: ops runner # 10.250.7.x: ops runner
# 10.250.8.11/32: nessus scanner
# 10.250.10.x: chatops runner # 10.250.10.x: chatops runner
# 10.250.12.x: release runner # 10.250.12.x: release runner
# 10.12.0.0/14: pod address range in gitlab-ops for runners # 10.12.0.0/14: pod address range in gitlab-ops for runners
...@@ -28,7 +29,7 @@ variable "bootstrap_script_version" { ...@@ -28,7 +29,7 @@ variable "bootstrap_script_version" {
variable "internal_subnets" { variable "internal_subnets" {
type = "list" type = "list"
default = ["10.224.0.0/13", "10.250.7.0/24", "10.250.10.0/24", "10.250.12.0/24", "10.12.0.0/14"] default = ["10.224.0.0/13", "10.250.7.0/24", "10.250.8.11", "10.250.10.0/24", "10.250.12.0/24", "10.12.0.0/14"]
} }
variable "other_monitoring_subnets" { variable "other_monitoring_subnets" {
......
Markdown is supported
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment