# About how to expand Node Port range？

**URL:** <https://forums.suse.com/t/about-how-to-expand-node-port-range/14696>\
**Category:** SUSE Rancher Prime\
**Created:** [July 2, 2019, 3:23am UTC](https://forums.suse.com/t/about-how-to-expand-node-port-range/14696 "2019-07-02T03:23:15Z")\
**Posts on this page:** 9\
**Page:** 1

<div class="post-metadata">

**Author:** ![feikay](https://avatars.discourse-cdn.com/v4/letter/f/f17d59/32.png) [@feikay](https://forums.suse.com/u/feikay)\
**Post date:** [July 2, 2019, 3:23am UTC](https://forums.suse.com/t/about-how-to-expand-node-port-range/14696/1 "2019-07-02T03:23:15Z")

</div>

I refer to the documentation for cluster installation in Helm HA mode. Node ports in clusters are now limited to 30000-32768. I would like to ask how to remove this restriction?

Thank you very much!

---

<div class="post-metadata">

**Author:** ![vincent](https://sea2.discourse-cdn.com/flex022/user_avatar/forums.suse.com/vincent/32/7156_2.png) [@vincent](https://forums.suse.com/u/vincent)\
**Post date:** [July 2, 2019, 5:36am UTC](https://forums.suse.com/t/about-how-to-expand-node-port-range/14696/2 "2019-07-02T05:36:56Z")

</div>

It’s in the config yaml, but it needs to be a contiguous range of ports that are all available. I.e. you probably don’t want to make it contain anything low. The standard range is 30000-32767 because 32768-61000 is the standard kernel ephemeral range, and 2,768 ports is generally enough.

[https://rancher.com/docs/rke/latest/en/config-options/services/#kubernetes-api-server](https://rancher.com/docs/rke/latest/en/config-options/services/#kubernetes-api-server)

---

<div class="post-metadata">

**Author:** ![feikay](https://avatars.discourse-cdn.com/v4/letter/f/f17d59/32.png) [@feikay](https://forums.suse.com/u/feikay)\
**Post date:** [July 2, 2019, 6:45am UTC](https://forums.suse.com/t/about-how-to-expand-node-port-range/14696/3 "2019-07-02T06:45:25Z")

</div>

Because of I use Helm HA installation type to setup rancher cluster. So i can’t find the api-server yaml file.

---

<div class="post-metadata">

**Author:** ![vincent](https://sea2.discourse-cdn.com/flex022/user_avatar/forums.suse.com/vincent/32/7156_2.png) [@vincent](https://forums.suse.com/u/vincent)\
**Post date:** [July 2, 2019, 6:48am UTC](https://forums.suse.com/t/about-how-to-expand-node-port-range/14696/4 "2019-07-02T06:48:33Z")

</div>

The standard way to do HA is to create a cluster with RKE, which has a cluster config yaml, which is what those docs are for. If you’re making it some other way then your need to configure it there.

---

<div class="post-metadata">

**Author:** ![feikay](https://avatars.discourse-cdn.com/v4/letter/f/f17d59/32.png) [@feikay](https://forums.suse.com/u/feikay)\
**Post date:** [July 2, 2019, 6:51am UTC](https://forums.suse.com/t/about-how-to-expand-node-port-range/14696/5 "2019-07-02T06:51:34Z")

</div>

I refer to the installation document of the official website for installation. It is installed using rke. My rancher is version 2.2.4. When using RKE for k8s installation, the relevant information is as follows

-------------------------- rancher-cluster.yml  
nodes:

- address: 192.168.0.181  
user: docker  
role: [controlplane,worker,etcd]
- address: 192.168.0.182  
user: docker  
role: [controlplane,worker,etcd]
- address: 192.168.0.183  
user: docker  
role: [controlplane,worker,etcd]
- address: 192.168.0.194  
user: docker  
role: [worker]
- address: 192.168.0.195  
user: docker  
role: [worker]
- address: 192.168.0.196  
user: docker  
role: [worker]

services:  
etcd:  
backup\_config:  
enabled: true # enables recurring etcd snapshots  
interval\_hours: 6 # time increment between snapshots  
retention: 60 # time in days before snapshot purge

---

<div class="post-metadata">

**Author:** ![vincent](https://sea2.discourse-cdn.com/flex022/user_avatar/forums.suse.com/vincent/32/7156_2.png) [@vincent](https://forums.suse.com/u/vincent)\
**Post date:** [July 2, 2019, 6:57am UTC](https://forums.suse.com/t/about-how-to-expand-node-port-range/14696/6 "2019-07-02T06:57:02Z")

</div>

And that as an option you can add to your `rancher-cluster.yml`

---

<div class="post-metadata">

**Author:** ![feikay](https://avatars.discourse-cdn.com/v4/letter/f/f17d59/32.png) [@feikay](https://forums.suse.com/u/feikay)\
**Post date:** [July 2, 2019, 7:02am UTC](https://forums.suse.com/t/about-how-to-expand-node-port-range/14696/7 "2019-07-02T07:02:06Z")

</div>

Add in the rancher-cluster.yml and in services section？Like this ?

* * *

services:  
etcd:  
backup\_config:  
enabled: true # enables recurring etcd snapshots  
interval\_hours: 6 # time increment between snapshots  
retention: 60 # time in days before snapshot purge  
kube-api:  
service\_node\_port\_range: 30000-32767  
pod\_security\_policy: false

---

<div class="post-metadata">

**Author:** ![feikay](https://avatars.discourse-cdn.com/v4/letter/f/f17d59/32.png) [@feikay](https://forums.suse.com/u/feikay)\
**Post date:** [July 2, 2019, 7:05am UTC](https://forums.suse.com/t/about-how-to-expand-node-port-range/14696/8 "2019-07-02T07:05:45Z")

</div>

can it work in rancher 2.2.4?

---

<div class="post-metadata">

**Author:** ![feikay](https://avatars.discourse-cdn.com/v4/letter/f/f17d59/32.png) [@feikay](https://forums.suse.com/u/feikay)\
**Post date:** [July 2, 2019, 7:31am UTC](https://forums.suse.com/t/about-how-to-expand-node-port-range/14696/9 "2019-07-02T07:31:22Z")

</div>

It is ok. Thank you very much
