Skip to content

Commit 0e67ec1

Browse files
authored
Merge pull request #8393 from kalexand-rh/enterprise-3.9
bug 1558228 linking to firewalld config
2 parents e2356d9 + c1b2990 commit 0e67ec1

File tree

1 file changed

+12
-5
lines changed

1 file changed

+12
-5
lines changed

install_config/install/prerequisites.adoc

Lines changed: 12 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -460,11 +460,18 @@ properly when the network interface for {product-title} has `NM_CONTROLLED=no`.
460460
==== Required Ports
461461

462462
The {product-title} installation automatically creates a set of internal
463-
firewall rules on each host using `iptables`. However, if your network
464-
configuration uses an external firewall, such as a hardware-based firewall, you
465-
must ensure infrastructure components can communicate with each other through
466-
specific ports that act as communication endpoints for certain processes or
467-
services.
463+
firewall rules on each host using
464+
xref:../../admin_guide/iptables.adoc#overview[iptables]. However, if your
465+
network configuration uses an external firewall, such as a hardware-based
466+
firewall, you must ensure infrastructure components can communicate with each
467+
other through specific ports that act as communication endpoints for certain
468+
processes or services.
469+
470+
[NOTE]
471+
====
472+
While iptables is the default firewall, firewalld is recommended for new
473+
installations. You can enable firewalld by setting `os_firewall_use_firewalld=true` in xref:../../install_config/install/advanced_install.adoc#advanced-install-configuring-firewalls[the Ansible inventory file].
474+
====
468475

469476
[NOTE]
470477
====

0 commit comments

Comments
 (0)