Managed Kubernetes
Latest
Frequently Asked Questions
Solutions
How Tos
Internal Only
Templates
Powered By

Title
Message
Create new category
What is the title of your new category?
Edit page index title
What is the title of the page index?
Edit category
What is the new title of your category?
Edit link
What is the new title and URL of your link?
The Kube-Scheduler and Kube-Controller Services Exposed on all Interfaces, Risking External Access
Copy Markdown
Open in ChatGPT
Open in Claude
Problem
The kube-scheduler and kube-controller-manager services are exposed on all interfaces, potentially allowing unauthorised external access.
Command
xxxxxxxxxx# lsof -i:10259COMMAND PID USER FD TYPE DEVICE SIZE/OFF NODE NAMEkube-sche 10263 root 3u IPv6 81585 0t0 TCP *:10259 (LISTEN)... # lsof -i:10257COMMAND PID USER FD TYPE DEVICE SIZE/OFF NODE NAMEkube-cont 10102 root 3u IPv6 44921 0t0 TCP *:10257 (LISTEN)...Environment
- Platform9 Managed Kubernetes - PMK 5.9.3-38
- Kubernetes version: 1.28.6-pmk.121
Resolution
This issue has been fixed in the PMK 5.12 release.
Additional Information
The Platform9 jira ID used to track this issue is PMK-6596. For any further details contact Platform9 support.
VariableType to search · ESC to discard
GlossaryType to search · ESC to discard
InsertType to search · ESC to discard
No matches
Last updated on
Was this page helpful?
Discard Changes
Do you want to discard your current changes and overwrite with the template?
Archive Synced Block
Message
Create new Template
What is this template's title?
Delete Template
Message