Please fill in the protocol (http/https/ws... to determine if it will cross the ingress port) and the reason for the port being open (hybrid deployment needs access?, external access client (kibana/gui...)) in the table below in prep of removing some nodeports in the run up to using an Ingress controller

Sync with Casablanca Unprotected Interfaces

TODO: add protocol to each port - to determine suitability for HTTP/HTTPS or multi-protocol proxy for ingress

NodePorts are used to allow client applications, that run outside of Kubernetes, access to ONAP components deployed by OOM.

A NodePort maps an externally reachable port to an internal port of an ONAP microservice.

It should be noted that the use of NodePorts is temporary. An alternative solution is currently being scoped for the Dublin Release.

But for now, this page is used to track NodePort assignments.


All ONAP project teams that have microservices that need to provide external access for clients, must update this wiki page to reserve NodePorts and prevent ONAP deployment failures due to NodePort conflicts.

If a service is only accessed by other services within the same kubernetes deployment (ie. databases, backend services with no external northbound APIs) then please DO NOT reserve

a NodePort as they are a very limited resource. The service name and its Internal Port (<service name>.port) should be used instead (ie. vid.8443)


To reserve a NodePort search the table below for the text "FREE_PORT".

If it is determined that an existing reservation is no longer required, please add the text "FREE_PORT" to indicate its availability.


Developer Checklist

Verify unused nodeports

Before using a particular nodeport - verify there is no conflict by deploying the entire system and checking services or the tables below.

Get the nodeport of a particular service

# human readable list
kubectl get services --all-namespaces | grep robot
# machine readable number
kubectl get --namespace onap -o jsonpath="{.spec.ports[0].nodePort}" services robot)


Node Port Reservations 302 prefix

Component

(sortable)

PodService name

Protocol

http/https/ws...

Node PortInternal PortReason for exposure outside of the internal DNS service name access
vid
vid
302008443
FREE_PORT


302018843
sdnc / ccsdk
ccsdk/oran/a1-policy-management-servicehttp
https
30093
30094
9080
9081
Used ito access A1 Policy Managment service API - used in different ONAP & OSC deployments - including external rApp/client/portal access
See ONAP/3GPP & ORAN Alignment: A1 Adapter extensions (Guilin)
sdnc
sdnc
302028282http port, removed in El Alto.  Instead, users should use https node port 30267
sdnc
sdnc-dgbuilder
302033000
sdc
sdc-be
302048443
sdc
sdc-be
302058080
sdc
sdc-fe
302068181
sdc
sdc-fe
302079443
appc
appc
302088282removed in Frankfurt
robot
robot
3020988u:p test:test
aai
aai-modelloader
302108080
appc
appc
302119090
portal
portal-sdk
302128443
portal
portal-app
302258443
policy
policy brmsgw
302169989


policy
drools (dup?)
302176969
policy
pap
302189091
policy
pap
302198443
aai
aai-sparky-be
302209517
policy
drools (dup?)
302219696
dcaeDCAEGEN2

hv-ves

xdcae-hv-ves-collector


302226061
dcae

DCAEGEN2


30223

Reserved for future DCAEapp

(12/30 - dcae-datafile-collector usage on this port is removed since El-Alto)

so
so-monitor
302249091


portal

portal-app (ssl)


302258443

https://gerrit.onap.org/r/#/c/69859/

OOM-1455 - Getting issue details... STATUS

dmaap
message-router
302263905
dmaap
message-router
302273904
appc
appc-dgbuilder
302283000CAUTION2: There might me blanks in following data.
aai
aai-modelloader
302298443CAUTION2: There might me blanks in following data.
appc
appc
302308443
appc
appc
302311830
aai
aai
302328080
aai
aai
302338443
pomba
pomba-kibanahttps302345601
dcae
xdcae-ves-collector
302358080
policy
nexus
302368081
policy
policy-apex-pdp
3023712345
aai
aai-graphgraph
302388453

AAI-2596 - Getting issue details... STATUS

aai
aai-spike
302399518
pomba
pomba-context-builder
302409530
dmaap
dmaap-bc
302418080
dmaap
dmaap-bc
302428443
aaf
aaf-sms
3024310443
aaf
aaf-sms-db
302448200CAUTION2: There might me blanks in following data.
sdnc
sdnc
302468280Appears to be no longer needed - investigating
dcae

dcae datafile collector


302458100
aaf
aaf-service
302478100
oof
oof-osdf
302488698
pomba
pomba-data-router
302499502
appc
appc-cds
3025080
aaf
aaf-gui
302518200
so
so-mariadb
302523306
log
log-kibanahttp302535601external access from client application
log
log-eshttp302549200external ELK stack for hybrid deployment
log
log-lshttp302555044external ELK stack for hybrid deployment
sdc
sdc-wfd-fe
302568080
sdc
sdc-wfd-be
302578080
policy
clamp
302582443
dmaap
dmaap-dr-provhttp302598080external access for multi-site/cluster comms
cli
cli
302608080
multicloud
multicloud-azure
302619008https://gerrit.onap.org/r/#/c/68647/
dcae

dcae datafile collector


30262                 8433
sdc
sdc-dcae-fe
302638183
sdc
sdc-dcae-fe
302649444
sdc
sdc-dcae-dt
302658186
sdc
sdc-dcae-dt
302669446
sdnc
sdnc
302678443https port, used for access to OpenDaylight REST interface 
aai
aai-crud-service (gizmo)
302689520
dmaap
dmaap-dr-provhttps302698443external access for multi-site/cluster comms
consul
consul-server-ui
302708500
cli
cli
302719090
sdnc
SDNC GEO (mysql)
30272

sdnc
SDNC GEO (mysql)
30273

nbi
nbi
302748443


oof
oof-has-api
302758091
oof
oof-has-music
302768080
so
so
302778080see also https://gerrit.onap.org/r/#/c/72433/2
aai
aai-champ
302789522
aai
aai-babel
302799516
msb
msb-iag
3028080
msb
msb-discovery
3028110081
msb
msb-eag
3028280
msb
msb-iag
30283443
msb
msb-eag
30284443
msb
msb-consul
302858500
dcae
dcae-redis
302866379
dcae
dcae-redis
3028716379
sniro
sniro-emulator
3028880

pnda has a conflict here - DCAEGEN2-1012 - Getting issue details... STATUS

appc
appc-cdt
3028918080
clamp
cdash-kibana
302905601
multicloud
multicloud
302919001No more such nodePort for multicloud
holmes

holmes-rule-mgmt


30292

holmes

holmes-rule-mgmt


30293

multicloud
multicloud-windriver
302949005No more such nodePort for multicloud
clamp
clamp
302958080
multicloud

multicloud-pike


302969007

No more such nodePort for multicloud

vnfsdk
refrepo
302978702
log
LOG demo target
302988080

taken from UUI - they are using the 303 prefix

OOM-1531 - Getting issue details... STATUS

pomba
pomba-networkdiscoveryREST302998080

taken from UUI - they are using the 303 prefix

SDNC-533 - Getting issue details... STATUS

https://gerrit.onap.org/r/#/c/73980/2

vvp
vvp
??

OOM-1534 - Getting issue details... STATUS

uui
uui
303988080may be a typo with 30298 - currently using 398 as of 20181125
uui
uui-server
303998082
OOM-1531 - Getting issue details... STATUS

may be a typo with 30298 - currently using 399 as of 20181125



There
is

Room above:

There is ROOM Above 31100







modeling
modeling-etsicatalog
303018806
music
music-api
303048443music-api


IF POSSIBLE
Leave31104-31109

open

aaf
aaf-servicehttps/REST(json|xml)311108100

AAF Main Service

aaf
aaf-locatorhttps/REST(json|xml)311118095AAF Locator
aaf
aaf-oauthhttps/REST(json|xml)311128140AAF OAuth2 access
aaf
aaf-guihttps/REST(json|xml)311138200AAF GUI
aaf
aaf-cmhttps/REST(json|xml)311148150AAF Certificate Manager
aaf
aaf-fs

http (Note: Fileserver

for CRLs, etc)

311158096AAF File Server
aaf
aafHOLD for Future

31116

31117

31118


Future AAF Services
aaf
aaf-hellohttps/REST(json|xml)311198130AAF Hello Sample
appc
appcHOLD for Future

31200

31201

31202

31203



oof
optf-model-apihttps/REST(json)312048698optf model, execution engine.
cps
cpshttps/REST(json)312058080CPS RESTService | Only from Honolulu Release
cps-xNf
cps-xNfhttps/REST(json)312068080CPS xNF RESTService | Only from Honolulu Release

Node Port Reservations (304 node port prefix range)

This table is for documenting node ports that are reserved outside of a typical ONAP deployment.

Even though the ports listed below may appear in ONAP Helm Charts, they are not used at runtime unless enabled through configuration.

For example, there may be a need to reserve node ports (even temporarily) for use in POC or for demo code, that currently exists in the ONAP codebase.

Component

(sortable)

PODService name

Protocol

(rest/multi-protocol)

Node PortInternal Port

dcae

dcae-pnda-mirror

(node the boostrap pod np

is named mirror)


3040080

A PNDA deployment (outside the Kubernetes
cluster) needs to download its components from
the PNDA mirror (inside the Kubernetes cluster)

DCAEGEN2-1012 - Getting issue details... STATUS


vfc
vfc-nslcm
304038403vfc-nslcm-port
vfc
vfc-vnflcm
304118801vfc-vnflcm-port
vfc
vfc-generic-vnfm-driver
304808484vfc-generic-vnfm-driver
vfc
vfc-redis
304818804vfc-redis-http-port1
vfc
vfc-redis
304826379vfc-redis-http-port2
vfc
vfc-db
304833306vfc-db-port
so
so-bpmn-infra
304048081so-bpmn-port
so
so-bpmn-infra
304055005so-bpmn-debug
so
so-vnfm-adapter
304069092

dcaeDCAEGEN2

xdcae-tca-analytics


3041011011

switch from 32010

DCAEGEN2-998 - Getting issue details... STATUS



dcae
DCAEGEN2
304138100DCAE BBE-ep
dcae
DCAEGEN2
3041410443DCAE Config Binding Service (https)
dcae
 DCAEGEN2
30415 10000DCAE Config Binding Service (http)
dcae
 DCAEGEN2
30416 8080/8687DCAE RESTConf collector Service
dcae
 DCAEGEN2
30417 8443DCAE VESCollector - Https
dcae
 DCAEGEN2
30418 8080DCAE Dashboard (http)
dcae
 DCAEGEN2
30419  8443DCAE Dashboard (https)
?
Netbox UI
304208080

sdc
sdc-wfd-fe
304318443https://gerrit.onap.org/r/#/c/87116/
policy
policy-api
304406969https://gerrit.onap.org/r/#/c/79318/
policy
policy-xacml-pdp
304416969https://gerrit.onap.org/r/#/c/81977/
policy
policy-pap
304426969

log
log-demonode0
304538080

log
log-demonode1

304548080

log
log-demonode2

304558080

log
log-es SSL
30456

20181016

LOG-748 - Getting issue details... STATUS



log
log-kb SSL
30457

20181016

LOG-748 - Getting issue details... STATUS



log
log-ls SSL
30458

20181016

LOG-748 - Getting issue details... STATUS



sdnc
SDNC GEO
30461


sdnc
SDNC GEO
30462


sdnc
SDNC GEO
30463


sdnc
SDNC GEO
30464


sdnc
SDNC GEO
30465


sdnc
SDNC GEO
30466


dcae
DCAEGEN2 
30470 162 Snmptrap (test purpose)
dcae
DCAEGEN2
30471
 Reserved
dcae
DCAEGEN2 
30472
 Reserved
dcae
DCAEGEN2 
30473 8080 DCAE MOD UI (HTTP) for Frankfurt release
dcae
DCAEGEN2
30474 8443 Reserved for DCAE MOD UI (HTTPs) post Frankfurt release
dcae
MUSIC
30475


dcae
MUSIC
304768080

dcae
MUSIC
30477


dcae
Datalake-admin-ui
3047980Datalake configuration protal.
dcae
Datalake-feeder
304081680Datalake control and exposure APIs.
multicloud
multicloud-starlingx
304859009

multicloud
multicloud-thinkcloud
304869010

multicloud

multicloud-fcaps


304879011

multicloud

multicloud-artifactbroker


304889014

multicloud
multicloud-tentative
30489


multicloud
multicloud-k8s
304989015

dmaap
DMaap tentative
30490
https://lists.onap.org/g/onap-discuss/topic/new_nodeports_for_the_dmaap/29582628?p=,,,20,0,0,0::recentpostdate%2Fsticky,,,20,2,0,29582628
dmaap
DMaap tentative
30491


dmaap
DMaap tentative
30492


dmaap
dmaap-dr-nodehttp304938080external access for multi-site/cluster comms
dmaap
dmaap-dr-nodehttps304948443external access for multi-site/cluster comms
multicloud
multicloud-service-assurance
304959009Only from Dublin Release
multicloud
multicloud-service-assurance (tentative)
304969010Only from Dublin Release
cds
cds-ui
304973000Dublin onwards.
cds
blueprint-processor
304998080Dublin onwards.
awx
awx-web
3047880Dublin onwards.


This port does not seem to be configurable from a Helm Chart.

Mike Elliott will raise issue to see if it can be made configurable within either the 302 or 304 ranges.

Service nameNode PortInternal Port
xdcae-tca-analytics

32010

use 30410

11011

DCAEGEN2-998 - Getting issue details... STATUS

  • No labels

25 Comments

  1. Hi, What's process of adding new TargetPort under SDNC? Do we just pick 30300 after 30299(AFF) directly?

    1. Hao Kuang there are un-used port in 302xx, such as 30246 - 30249, 30259 - 30259 and etc. We shall just pick one of those 302 prefix number, As they are available, it would be easier for the sdnc deployment yaml file. 

      1. Yeap, I understand this and I am not sure the reason that some of the numbers are not used between 30200 - 30299.  And also, do we have to apply to someone for a number or just pick a unused one then update this page?

        1. The range thing is sort of an artificial requirement to separate "instances" of OOM on the same physical box.  I would just go through the range and find the first unused port.  I think 30221 was available.

          K8s can auto-pick nodeports for you if you leave it out but the first crack at this used pre-determined ports so that operators could control firewall rules for security reasons.  There are probably better ways of handling external access into the K8s cluster that need to be explored!

          1. Yeap, you are right. 

            Thanks for the info. So we are going to use 30221 temporarily (smile) 

              1. Sure. You may need to update this wiki like 30221 (Code is being reviewed=> https://gerrit.onap.org/r/#/c/25547/3/kubernetes/policy/templates/all-services.yaml).  I will choose 30246. 

  2. AAI UI does not seem to have an external port? 

    http://aai.api.simpledemo.onap.org:9517/services/aai/webapp/index.html#/viewInspect

    Is there a way to configure it in an ONAP installation? We want to access the ONAP portal outside of VNC.


    1. as of 20180910

      onap          aai-sparky-be                      NodePort       10.43.52.5      <none>                                 9517:30220/TCP

  3. How to reserve ports in range of 304nn and make it work in ONAP environment?

    I tried reserving ports here but in ONAP deployment; the default ONAP prefix of 302nn replaced my custom prefix and the pod got failed in startup.

  4. We are trying to create a Helm Chart for the new AAI Spike microservice.  We need to allocate a nodePort in the range 302 but this is now exhausted.  By chance we have come across an unused port 77 reserved for OOF-HAS-2.  Please could we use port 77 if it is not needed for OOF?  Thank you.

    1. That 77 port is reserved for OOF - you will likely need to get the next one in 304xx

      OOM-1366 - Getting issue details... STATUS

      with clamp and pomba enabled (ran clamp first)
      amdocs@ubuntu:~/_dev/oom/kubernetes$ sudo helm upgrade -i onap local/onap --namespace onap -f dev.yaml
      Error: UPGRADE FAILED: failed to create resource: Service "pomba-kibana" is invalid: spec.ports[0].nodePort: Invalid value: 30234: provided port is already allocated
  5. Ports are OK after clamp fix

    1 hour (both sets of DCAEGEN2 secondary orchestration went through) - on a 256G single AWS VM (with override - Cloud Native Deployment#Changemax-podsfromdefault110podlimit)

    at 1 hour
    ubuntu@ip-172-31-20-218:~$ free
                  total        used        free      shared  buff/cache   available
    Mem:      251754696   111586672    45000724      193628    95167300   137158588
    ubuntu@ip-172-31-20-218:~$ kubectl get pods --all-namespaces | grep onap | wc -l
    164
    ubuntu@ip-172-31-20-218:~$ kubectl get pods --all-namespaces | grep onap | grep -E '1/1|2/2' | wc -l
    155
    ubuntu@ip-172-31-20-218:~$ kubectl get pods --all-namespaces | grep -E '0/|1/2' | wc -l
    8
    ubuntu@ip-172-31-20-218:~$ kubectl get pods --all-namespaces | grep -E '0/|1/2'
    onap          dep-dcae-ves-collector-59d4ff58f7-94rpq                 1/2       Running                 0          4m
    onap          onap-aai-champ-68ff644d85-rv7tr                         0/1       Running                 0          59m
    onap          onap-aai-gizmo-856f86d664-q5pvg                         1/2       CrashLoopBackOff        10         59m
    onap          onap-oof-85864d6586-zcsz5                               0/1       ImagePullBackOff        0          59m
    onap          onap-pomba-kibana-d76b6dd4c-sfbl6                       0/1       Init:CrashLoopBackOff   8          59m
    onap          onap-pomba-networkdiscovery-85d76975b7-mfk92            1/2       CrashLoopBackOff        11         59m
    onap          onap-pomba-networkdiscoveryctxbuilder-c89786dfc-qnlx9   1/2       CrashLoopBackOff        10         59m
    onap          onap-vid-84c88db589-8cpgr                               1/2       CrashLoopBackOff        9          59m
  6. 20180906:1200 port status - with 58 to 77 fix for  SO-984 - Getting issue details... STATUS

    testing manually modified 58 to 77 on a 128g full onap vm
    
    ubuntu@ip-172-31-25-157:~/oom/kubernetes$ sudo helm install local/onap -n onap --namespace onap
    NAME:   onap
    Error: getting deployed release "onap": release: "onap" not found
    
    ubuntu@ip-172-31-25-157:~$ kubectl get services --all-namespaces | grep 58
    onap          clamp                              NodePort       10.43.124.145   <none>                                 8080:30295/TCP,8443:30258/TCP                                 1m
    ubuntu@ip-172-31-25-157:~$ kubectl get services --all-namespaces | grep 77
    onap          so                                 NodePort       10.43.172.5     <none>                                 10100:30277/TCP                                               1m
    ubuntu@ip-172-31-25-157:~$ kubectl get services --all-namespaces
    NAMESPACE     NAME                               TYPE           CLUSTER-IP      EXTERNAL-IP                            PORT(S)                                                       AGE
    default       kubernetes                         ClusterIP      10.43.0.1       <none>                                 443/TCP                                                       22h
    kube-system   heapster                           ClusterIP      10.43.22.1      <none>                                 80/TCP                                                        1h
    kube-system   kube-dns                           ClusterIP      10.43.0.10      <none>                                 53/UDP,53/TCP                                                 1h
    kube-system   kubernetes-dashboard               ClusterIP      10.43.252.76    <none>                                 80/TCP                                                        1h
    kube-system   monitoring-grafana                 ClusterIP      10.43.54.124    <none>                                 80/TCP                                                        1h
    kube-system   monitoring-influxdb                ClusterIP      10.43.215.107   <none>                                 8086/TCP                                                      1h
    kube-system   tiller-deploy                      ClusterIP      10.43.34.75     <none>                                 44134/TCP                                                     22h
    onap          aaf-cass                           ClusterIP      None            <none>                                 7000/TCP,7001/TCP,9042/TCP,9160/TCP                           1m
    onap          aaf-cm                             ClusterIP      10.43.44.68     <none>                                 8150/TCP                                                      1m
    onap          aaf-fs                             ClusterIP      10.43.197.93    <none>                                 8096/TCP                                                      1m
    onap          aaf-gui                            NodePort       10.43.244.30    <none>                                 8200:30251/TCP                                                1m
    onap          aaf-hello                          ClusterIP      10.43.144.134   <none>                                 8130/TCP                                                      1m
    onap          aaf-locate                         ClusterIP      10.43.4.85      <none>                                 8095/TCP                                                      1m
    onap          aaf-oauth                          ClusterIP      10.43.80.138    <none>                                 8140/TCP                                                      1m
    onap          aaf-service                        NodePort       10.43.216.155   <none>                                 8100:30247/TCP                                                1m
    onap          aaf-sms                            NodePort       10.43.155.0     <none>                                 10443:30243/TCP                                               1m
    onap          aaf-sms-db                         NodePort       10.43.79.25     <none>                                 8200:30244/TCP                                                1m
    onap          aai                                NodePort       10.43.40.47     <none>                                 8080:30232/TCP,8443:30233/TCP                                 1m
    onap          aai-babel                          NodePort       10.43.38.101    <none>                                 9516:30279/TCP                                                1m
    onap          aai-cassandra                      ClusterIP      None            <none>                                 9042/TCP,9160/TCP,61621/TCP                                   1m
    onap          aai-champ                          NodePort       10.43.109.79    <none>                                 9522:30278/TCP                                                1m
    onap          aai-crud-service                   NodePort       10.43.3.209     <none>                                 9520:30268/TCP                                                1m
    onap          aai-elasticsearch                  ClusterIP      None            <none>                                 9200/TCP                                                      1m
    onap          aai-modelloader                    NodePort       10.43.79.145    <none>                                 8080:30210/TCP,8443:30229/TCP                                 1m
    onap          aai-resources                      ClusterIP      None            <none>                                 8447/TCP,5005/TCP                                             1m
    onap          aai-search-data                    ClusterIP      None            <none>                                 9509/TCP                                                      1m
    onap          aai-sparky-be                      NodePort       10.43.52.5      <none>                                 9517:30220/TCP                                                1m
    onap          aai-traversal                      ClusterIP      None            <none>                                 8446/TCP,5005/TCP                                             1m
    onap          appc                               NodePort       10.43.213.103   <none>                                 8282:30230/TCP,1830:30231/TCP,9090:30211/TCP                  1m
    onap          appc-ansible-server                ClusterIP      10.43.80.151    <none>                                 8000/TCP                                                      1m
    onap          appc-cdt                           NodePort       10.43.251.96    <none>                                 80:30289/TCP                                                  1m
    onap          appc-cluster                       ClusterIP      None            <none>                                 2550/TCP                                                      1m
    onap          appc-dbhost                        ClusterIP      None            <none>                                 3306/TCP                                                      1m
    onap          appc-dbhost-read                   ClusterIP      10.43.228.127   <none>                                 3306/TCP                                                      1m
    onap          appc-dgbuilder                     NodePort       10.43.114.237   <none>                                 3000:30228/TCP                                                1m
    onap          appc-sdnctldb01                    ClusterIP      None            <none>                                 3306/TCP                                                      1m
    onap          appc-sdnctldb02                    ClusterIP      None            <none>                                 3306/TCP                                                      1m
    onap          brmsgw                             NodePort       10.43.182.111   <none>                                 9989:30216/TCP                                                1m
    onap          cdash-es                           ClusterIP      10.43.232.158   <none>                                 9200/TCP                                                      1m
    onap          cdash-es-tcp                       ClusterIP      10.43.66.221    <none>                                 9300/TCP                                                      1m
    onap          cdash-kibana                       NodePort       10.43.207.30    <none>                                 5601:30290/TCP                                                1m
    onap          cdash-ls                           ClusterIP      10.43.23.171    <none>                                 9600/TCP                                                      1m
    onap          clamp                              NodePort       10.43.124.145   <none>                                 8080:30295/TCP,8443:30258/TCP                                 1m
    onap          clampdb                            ClusterIP      10.43.129.59    <none>                                 3306/TCP                                                      1m
    onap          cli                                NodePort       10.43.178.186   <none>                                 8080:30260/TCP,9090:30271/TCP                                 1m
    onap          consul                             ExternalName   <none>          consul-server.onap.svc.cluster.local   <none>                                                        1m
    onap          consul-server                      ClusterIP      None            <none>                                 8301/TCP                                                      1m
    onap          consul-server-ui                   NodePort       10.43.11.191    <none>                                 8500:30270/TCP                                                1m
    onap          dbc-pg-primary                     ClusterIP      10.43.28.140    <none>                                 5432/TCP                                                      1m
    onap          dbc-pg-replica                     ClusterIP      10.43.16.111    <none>                                 5432/TCP                                                      1m
    onap          dbc-postgres                       ClusterIP      10.43.243.99    <none>                                 5432/TCP                                                      1m
    onap          dcae-cloudify-manager              ClusterIP      10.43.239.151   <none>                                 80/TCP                                                        1m
    onap          dcae-healthcheck                   ClusterIP      10.43.163.210   <none>                                 80/TCP                                                        1m
    onap          dcae-pg-primary                    ClusterIP      10.43.151.125   <none>                                 5432/TCP                                                      1m
    onap          dcae-pg-replica                    ClusterIP      10.43.113.198   <none>                                 5432/TCP                                                      1m
    onap          dcae-postgres                      ClusterIP      10.43.174.186   <none>                                 5432/TCP                                                      1m
    onap          dcae-redis                         NodePort       10.43.12.154    <none>                                 6379:30286/TCP,16379:30287/TCP                                1m
    onap          dmaap-bc                           NodePort       10.43.148.123   <none>                                 8080:30241/TCP,8443:30242/TCP                                 1m
    onap          dmaap-dr-db                        ClusterIP      10.43.115.107   <none>                                 3306/TCP                                                      1m
    onap          dmaap-dr-node                      ClusterIP      10.43.79.136    <none>                                 8080/TCP,8443/TCP                                             1m
    onap          dmaap-dr-prov                      NodePort       10.43.250.239   <none>                                 8080:30259/TCP,8443:30269/TCP                                 1m
    onap          drools                             NodePort       10.43.192.190   <none>                                 6969:30217/TCP,9696:30221/TCP                                 1m
    onap          esr                                ClusterIP      10.43.86.41     <none>                                 9518/TCP                                                      1m
    onap          esr-gui                            ClusterIP      10.43.255.37    <none>                                 8080/TCP                                                      1m
    onap          log-es                             NodePort       10.43.74.24     <none>                                 9200:30254/TCP                                                1m
    onap          log-es-tcp                         ClusterIP      10.43.35.15     <none>                                 9300/TCP                                                      1m
    onap          log-kibana                         NodePort       10.43.183.161   <none>                                 5601:30253/TCP                                                1m
    onap          log-ls                             NodePort       10.43.114.216   <none>                                 5044:30255/TCP                                                1m
    onap          log-ls-http                        ClusterIP      10.43.167.191   <none>                                 9600/TCP                                                      1m
    onap          message-router                     NodePort       10.43.172.152   <none>                                 3904:30227/TCP,3905:30226/TCP                                 1m
    onap          message-router-kafka               ClusterIP      10.43.101.207   <none>                                 9092/TCP                                                      1m
    onap          message-router-zookeeper           ClusterIP      None            <none>                                 2181/TCP                                                      1m
    onap          msb-consul                         NodePort       10.43.250.201   <none>                                 8500:30285/TCP                                                1m
    onap          msb-discovery                      NodePort       10.43.33.188    <none>                                 10081:30281/TCP                                               1m
    onap          msb-eag                            NodePort       10.43.124.104   <none>                                 80:30282/TCP,443:30284/TCP                                    1m
    onap          msb-iag                            NodePort       10.43.210.197   <none>                                 80:30280/TCP,443:30283/TCP                                    1m
    onap          multicloud                         NodePort       10.43.4.255     <none>                                 9001:30291/TCP                                                1m
    onap          multicloud-ocata                   NodePort       10.43.198.223   <none>                                 9006:30293/TCP                                                1m
    onap          multicloud-vio                     NodePort       10.43.100.89    <none>                                 9004:30292/TCP                                                1m
    onap          multicloud-windriver               NodePort       10.43.191.52    <none>                                 9005:30294/TCP                                                1m
    onap          nbi                                NodePort       10.43.173.92    <none>                                 8080:30274/TCP                                                1m
    onap          nbi-mariadbhost                    ClusterIP      None            <none>                                 3306/TCP                                                      1m
    onap          nbi-mongohost                      ClusterIP      None            <none>                                 27017/TCP                                                     1m
    onap          nbi-mongohost-read                 ClusterIP      10.43.235.109   <none>                                 27017/TCP                                                     1m
    onap          nexus                              NodePort       10.43.245.169   <none>                                 8081:30236/TCP                                                1m
    onap          oof-has-api                        NodePort       10.43.12.27     <none>                                 8091:30275/TCP                                                1m
    onap          oof-has-cassandra                  ClusterIP      10.43.77.66     <none>                                 9160/TCP,7000/TCP,7001/TCP,7199/TCP,9042/TCP                  1m
    onap          oof-has-music                      NodePort       10.43.98.253    <none>                                 8080:30276/TCP                                                1m
    onap          oof-has-zk                         ClusterIP      10.43.76.122    <none>                                 2181/TCP                                                      1m
    onap          oof-osdf                           NodePort       10.43.100.207   <none>                                 8698:30248/TCP                                                1m
    onap          pap                                NodePort       10.43.103.237   <none>                                 8443:30219/TCP,9091:30218/TCP                                 1m
    onap          pdp                                ClusterIP      None            <none>                                 8081/TCP                                                      1m
    onap          policy-apex-pdp                    NodePort       10.43.224.126   <none>                                 12345:30237/TCP                                               1m
    onap          policydb                           ClusterIP      None            <none>                                 3306/TCP                                                      1m
    onap          pomba-aaictxbuilder                ClusterIP      10.43.191.51    <none>                                 9530/TCP                                                      1m
    onap          pomba-data-router                  NodePort       10.43.62.161    <none>                                 9502:30249/TCP                                                1m
    onap          pomba-es                           ClusterIP      10.43.71.130    <none>                                 9200/TCP                                                      1m
    onap          pomba-es-tcp                       ClusterIP      10.43.82.214    <none>                                 9300/TCP                                                      1m
    onap          pomba-kibana                       NodePort       10.43.131.189   <none>                                 5601:30234/TCP                                                1m
    onap          pomba-networkdiscovery             ClusterIP      10.43.140.223   <none>                                 9531/TCP                                                      1m
    onap          pomba-networkdiscoveryctxbuilder   ClusterIP      10.43.197.81    <none>                                 9530/TCP                                                      1m
    onap          pomba-sdcctxbuilder                ClusterIP      10.43.240.107   <none>                                 9530/TCP                                                      1m
    onap          pomba-search-data                  ClusterIP      10.43.232.13    <none>                                 9509/TCP                                                      1m
    onap          pomba-servicedecomposition         ClusterIP      10.43.54.31     <none>                                 9532/TCP                                                      1m
    onap          pomba-validation-service           ClusterIP      10.43.29.165    <none>                                 9529/TCP                                                      1m
    onap          portal-app                         LoadBalancer   10.43.55.229    172.17.0.1                             8989:30215/TCP,8006:30213/TCP,8010:30214/TCP                  1m
    onap          portal-cassandra                   ClusterIP      10.43.201.96    <none>                                 9160/TCP,7000/TCP,7001/TCP,7199/TCP,9042/TCP                  1m
    onap          portal-db                          ClusterIP      10.43.147.106   <none>                                 3306/TCP                                                      1m
    onap          portal-sdk                         NodePort       10.43.248.78    <none>                                 8080:30212/TCP                                                1m
    onap          portal-widget                      ClusterIP      10.43.63.44     <none>                                 8082/TCP                                                      1m
    onap          portal-zookeeper                   ClusterIP      10.43.55.209    <none>                                 2181/TCP                                                      1m
    onap          refrepo                            NodePort       10.43.196.122   <none>                                 8702:30297/TCP                                                1m
    onap          robot                              NodePort       10.43.8.199     <none>                                 88:30209/TCP                                                  1m
    onap          sdc-be                             NodePort       10.43.191.158   <none>                                 8443:30204/TCP,8080:30205/TCP                                 1m
    onap          sdc-cs                             ClusterIP      10.43.207.215   <none>                                 9160/TCP,9042/TCP                                             1m
    onap          sdc-es                             ClusterIP      10.43.192.171   <none>                                 9200/TCP,9300/TCP                                             1m
    onap          sdc-fe                             NodePort       10.43.238.172   <none>                                 8181:30206/TCP,9443:30207/TCP                                 1m
    onap          sdc-kb                             ClusterIP      10.43.21.143    <none>                                 5601/TCP                                                      1m
    onap          sdc-onboarding-be                  ClusterIP      10.43.141.7     <none>                                 8445/TCP,8081/TCP                                             1m
    onap          sdc-wfd-be                         NodePort       10.43.105.1     <none>                                 8080:30257/TCP                                                1m
    onap          sdc-wfd-fe                         NodePort       10.43.140.207   <none>                                 8080:30256/TCP                                                1m
    onap          sdnc                               NodePort       10.43.77.237    <none>                                 8282:30202/TCP,8202:30208/TCP,8280:30246/TCP,8443:30267/TCP   1m
    onap          sdnc-ansible-server                ClusterIP      10.43.14.48     <none>                                 8000/TCP                                                      1m
    onap          sdnc-cluster                       ClusterIP      None            <none>                                 2550/TCP                                                      1m
    onap          sdnc-dbhost                        ClusterIP      None            <none>                                 3306/TCP                                                      1m
    onap          sdnc-dbhost-read                   ClusterIP      10.43.197.173   <none>                                 3306/TCP                                                      1m
    onap          sdnc-dgbuilder                     NodePort       10.43.194.71    <none>                                 3000:30203/TCP                                                1m
    onap          sdnc-dmaap-listener                ClusterIP      None            <none>                                 <none>                                                        1m
    onap          sdnc-portal                        NodePort       10.43.35.110    <none>                                 8843:30201/TCP                                                1m
    onap          sdnc-sdnctldb01                    ClusterIP      None            <none>                                 3306/TCP                                                      1m
    onap          sdnc-sdnctldb02                    ClusterIP      None            <none>                                 3306/TCP                                                      1m
    onap          sdnc-ueb-listener                  ClusterIP      None            <none>                                 <none>                                                        1m
    onap          sniro-emulator                     NodePort       10.43.155.121   <none>                                 80:30288/TCP                                                  1m
    onap          so                                 NodePort       10.43.172.5     <none>                                 10100:30277/TCP                                               1m
    onap          so-bpmn-infra                      ClusterIP      10.43.149.170   <none>                                 10200/TCP                                                     1m
    onap          so-catalog-db-adapter              ClusterIP      10.43.239.156   <none>                                 10800/TCP                                                     1m
    onap          so-mariadb                         NodePort       10.43.174.50    <none>                                 3306:30252/TCP                                                1m
    onap          so-openstack-adapter               ClusterIP      10.43.38.0      <none>                                 10300/TCP                                                     1m
    onap          so-request-db-adapter              ClusterIP      10.43.56.196    <none>                                 10700/TCP                                                     1m
    onap          so-sdc-controller                  ClusterIP      10.43.115.39    <none>                                 10500/TCP                                                     1m
    onap          so-sdnc-adapter                    ClusterIP      10.43.235.132   <none>                                 10400/TCP                                                     1m
    onap          so-vfc-adapter                     ClusterIP      10.43.199.245   <none>                                 10600/TCP                                                     1m
    onap          uui                                NodePort       10.43.5.171     <none>                                 8080:30398/TCP                                                1m
    onap          uui-server                         NodePort       10.43.139.221   <none>                                 8082:30399/TCP                                                1m
    onap          vfc-catalog                        ClusterIP      10.43.142.2     <none>                                 8806/TCP                                                      1m
    onap          vfc-db                             ClusterIP      10.43.18.12     <none>                                 3306/TCP,6379/TCP                                             1m
    onap          vfc-ems-driver                     ClusterIP      10.43.61.173    <none>                                 8206/TCP                                                      1m
    onap          vfc-generic-vnfm-driver            ClusterIP      10.43.202.138   <none>                                 8484/TCP                                                      1m
    onap          vfc-huawei-vnfm-driver             ClusterIP      10.43.235.144   <none>                                 8482/TCP,8483/TCP                                             1m
    onap          vfc-juju-vnfm-driver               ClusterIP      10.43.117.92    <none>                                 8483/TCP                                                      1m
    onap          vfc-multivim-proxy                 ClusterIP      10.43.180.107   <none>                                 8481/TCP                                                      1m
    onap          vfc-nokia-v2vnfm-driver            ClusterIP      10.43.207.78    <none>                                 8089/TCP                                                      1m
    onap          vfc-nokia-vnfm-driver              ClusterIP      10.43.65.209    <none>                                 8486/TCP                                                      1m
    onap          vfc-nslcm                          ClusterIP      10.43.229.25    <none>                                 8403/TCP                                                      1m
    onap          vfc-resmgr                         ClusterIP      10.43.152.60    <none>                                 8480/TCP                                                      1m
    onap          vfc-vnflcm                         ClusterIP      10.43.117.157   <none>                                 8801/TCP                                                      1m
    onap          vfc-vnfmgr                         ClusterIP      10.43.17.194    <none>                                 8803/TCP                                                      1m
    onap          vfc-vnfres                         ClusterIP      10.43.147.54    <none>                                 8802/TCP                                                      1m
    onap          vfc-workflow                       ClusterIP      10.43.196.44    <none>                                 10550/TCP                                                     1m
    onap          vfc-workflow-engine                ClusterIP      10.43.63.81     <none>                                 8080/TCP                                                      1m
    onap          vfc-zte-sdnc-driver                ClusterIP      10.43.121.232   <none>                                 8411/TCP                                                      1m
    onap          vfc-zte-vnfm-driver                ClusterIP      10.43.81.36     <none>                                 8410/TCP                                                      1m
    onap          vid                                NodePort       10.43.194.199   <none>                                 8443:30200/TCP                                                1m
    onap          vid-galera                         ClusterIP      None            <none>                                 3306/TCP                                                      1m
    onap          vnfsdk-postgres                    ClusterIP      10.43.180.84    <none>                                 5432/TCP                                                      1m
    
    
    
    
  7. USECASEUI-149 - Getting issue details... STATUS

  8. Jonathan,

      Noticed your 311xx nodeports – do you really want all of these?   You already have allocations for your some ports in the 302 port range – at least gui and service, db usually is not exposed externally – this would leave just locator, oauth and cm needing ports.  

       Unless you would like to free up the older 302 ports under aaf and use the new 311 prefix exclusively.

       Also could you post the jira or patch when it comes up for the ports so we can cross-reference – thank you

    /michael



    aaf-sms

    30243

    10443


    aaf-sms-db

    30244

    8200


    aaf-service

    30247

    8100

    aaf-gui

    30251

    8200



    There

    is

    Room above:

    There is ROOM Above 31100

    aaf-locator

    31100

    8095

    AAF Locator

    aaf-service

    31101

    8100

    AAF Main Service

    aaf-oauth

    31101

    8130

    AAF OAuth2 access

    aaf-gui

    31102

    8200

    AAF GUI

    aaf-cm

    31103

    8150

    AAF Certificate Manager

    IF POSSIBLE

    Leave

    31104-31109

    open

  9. I'm looking to reserve a single port for the DCAEGEN2 config binding service, which needs to externalized for multi-site operation.   The instructions say to search for "FREE_PORT", but there aren't any ports marked as "FREE_PORT".   The first table is "Node Port Reservations 302 prefix", but it also has ports in the 303 and 311 ranges.   I'm confused.  What is the available port range, and how I should I reserve a port?   I'm guessing that maybe 30302 is available or 31110, but I'm not sure.

    1. 30415-30417 looked open; assigned for DCAE.  CBS could use one of them in Dublin (pls update the corresponding row)

  10. Hi Michael O'BrienBorislav Glozman,

    We would need to reserve 2 more ports for HTTPS connection on sdc-wfd-be and sdc-wfd-fe pods. All the existing nodeport for sdc are from 302 prefix but now I see none of the port in 302 range seems available. Is it ok to reserve some ports from 304 range and some from 302 range for such a use case?

  11. I believe that we should reduce the number of NodePorts and accept NodePort only when some criteria are respected.

    Alignment with Security committee is also important.

  12. Borislav Glozman and Michael O'Brien

    I am adding the updates to support https for the wfd-be and wfd-fe and need a ports for https. see https://gerrit.onap.org/r/c/oom/+/98535

    please let me know what i can use and whether it should go into a different range?