mrdigital
By:
mrdigital

Floating IP Anchor Subnet?

December 12, 2015 916 views
Firewall

What is the anchor ip subnet? Right now I'm losing access when using images if it changes from what I had ufw set to. What should I use to let ufw use any anchor? It'd be easy if i could use an interface but I can't. Thanks.

To Action From


10.12.0.16 22/tcp ALLOW Anywhere

1 Answer

Hello,

Can you go into a bit more detail what you are trying to do? If you are setting this up through a script, I would suggesting using the metadata to grab the anchor IP.

You can grab it with
curl http://169.254.169.254/metadata/v1/interfaces/public/0/anchor_ipv4/address
and it will return the anchor IP for the droplet. This would allow you to set this directly as opposed to setting a range that can vary based on region and other unpredictable factors.

If this doesn't work, please go into a bit more information on what exactly you are trying to do and perhaps a more specific solution can be offered.

Edited for errors.

  • Thanks I ended up using

    10.0.0.0/11 22/tcp ALLOW Anywhere

    • Hello,

      That will work too, just keep in mind that opens up the private IP as well (if you have it configured) as the private IP uses the same 10.* addresses. just something to keep in mind if you are also enabling private networking for the droplets.

Have another answer? Share your knowledge.