Home / Support / Oracle Cloud Marketplace / etcd
In Oracle reviewA hardened, CVE-patched virtual machine image running etcd — the Cloud Native Computing Foundation's distributed, strongly-consistent key-value store — on Oracle Linux 9.
| Status | In Oracle certification review |
|---|---|
| Version | 3.7.0 |
| Platform | Oracle Linux 9 |
| Ports open in the host firewall | SSH (22/tcp), 2379/tcp |
| Category | Databases |
| Upstream licence | Apache-2.0 |
| Pricing | Pay-as-you-go software fee per OCPU-hour, billed by Oracle on your OCI invoice — see the listing's Pricing tab |
This is the listing's usage information, verbatim. Every command in it is run by our QA on a freshly launched instance before an image version can publish, so the text and the tested procedure cannot drift apart.
After launch:
ssh opc@<public-ip>sudo systemctl status etcdsudo /usr/local/bin/etcdctl --endpoints=https://127.0.0.1:2379 --cacert=/etc/etcd/tls/server.crt endpoint health
sudo /usr/local/bin/etcdctl --endpoints=https://127.0.0.1:2379 --cacert=/etc/etcd/tls/server.crt put hello world
sudo /usr/local/bin/etcdctl --endpoints=https://127.0.0.1:2379 --cacert=/etc/etcd/tls/server.crt get hello --print-value-only
sudo curl -s --cacert /etc/etcd/tls/server.crt https://127.0.0.1:2379/versionsudo /usr/local/bin/etcdctl --endpoints=https://127.0.0.1:2379 --cacert=/etc/etcd/tls/server.crt user add root
sudo /usr/local/bin/etcdctl --endpoints=https://127.0.0.1:2379 --cacert=/etc/etcd/tls/server.crt user grant-role root root
sudo /usr/local/bin/etcdctl --endpoints=https://127.0.0.1:2379 --cacert=/etc/etcd/tls/server.crt auth enablesudo sed -i 's#^listen-client-urls:.*#listen-client-urls: https://0.0.0.0:2379#' /etc/etcd/etcd.conf.yml
sudo sed -i "s#^advertise-client-urls:.*#advertise-client-urls: https://$(hostname -f):2379#" /etc/etcd/etcd.conf.yml
sudo systemctl restart etcdPort 2379 is already permitted in the host firewall. Restrict it in your VCN security list to the application tier's CIDR; never expose etcd to the internet. The peer port (2380) stays on loopback and blocked by the host firewall.
The image is CVE-patched at build time. Apply ongoing OS updates with:
sudo dnf -y updateetcd itself is a static binary in /usr/local/bin (not a package); etcd fixes ship as new image versions.
Email support@dcassociatesgroup.com (response within 1 business day) or use the
contact form. Include the listing name, your OCI region, the instance OCID and the
output of sudo journalctl -u <service> -n 100 for the unit named in the quick start.
etcd is a registered trademark of The Linux Foundation. This image is an independent hardened distribution and is not affiliated with, endorsed by, or sponsored by the etcd project, the CNCF, or The Linux Foundation.