This message was deleted.
# rke2
a
This message was deleted.
c
all communication is inbound to rancher, from the downstream clusters. Rancher needs to be reachable from all the clusters it manages.
If you’re provisioning RKE1 clusters, it will SSH into the nodes to deploy Kubernetes components; other than that all communication is inbound to rancher. RKE2 and K3s only require outbound connectivity, as the installation is embedded in the cloud-init metadata.