Review firewall config for ssh proxy
Current firewalld rules are added to the public zone. Review the firewalld rules in the ssh proxy node and add them to the appropriate zone.
We might also have to restrict ssh port access to only a few IPs like the master nodes OR cheaha cluster CIDR range, because only rc-ops team will access those machines via ssh
The sshpiper port 22 is opened to the internet for ssh.