From ed1a1acf7ece02c2adb2d226f249e84ee0c2016e Mon Sep 17 00:00:00 2001 From: Jon Date: Fri, 17 Nov 2023 23:07:25 +0930 Subject: [PATCH] fix(firewall): if host value enpty, don't create rule !9 nofusscomputing/infrastructure/configuration-management/project-production!4 --- templates/iptables-kubernetes.rules.j2 | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/templates/iptables-kubernetes.rules.j2 b/templates/iptables-kubernetes.rules.j2 index 2b0d1b2..439d81d 100644 --- a/templates/iptables-kubernetes.rules.j2 +++ b/templates/iptables-kubernetes.rules.j2 @@ -54,11 +54,12 @@ -%} {#- Convert dns lookup to list, and select the first item -#} {%- set kubernetes_host = kubernetes_host | from_yaml_all | list -%} - {%- set kubernetes_host = kubernetes_host[0] -%} + {%- set kubernetes_host = kubernetes_host[0] | default('') -%} {%- endif -%} {%- endif -%} + {%- if kubernetes_host != '' -%} {%- for master_host in groups['kubernetes_master'] -%} @@ -159,6 +160,8 @@ {%- endif -%} + {%- endif -%} + {%- endfor -%} {%- if Kubernetes_Master | default(false) | bool -%}