[openstack-dev] Advice on a Neutron ACL kludge

Neil Jerram Neil.Jerram at metaswitch.com
Thu Apr 9 13:08:05 UTC 2015


I think that people often mean different things by ACLs, so can you be
more precise?

Thanks,
    Neil


________________________________________
From: Rich Wellner <rkw at objenv.com>
Sent: 09 April 2015 01:29
To: openstack-dev at lists.openstack.org
Subject: [openstack-dev] Advice on a Neutron ACL kludge

We are pursuing getting some sort of ACLs into neutron in the near term
(and then continuing to work with people here on a longer term solution
for Liberty).

For the short term, I think our needs will be met by taking the
iptablesmanager class and modfying (or overriding or creating a plugin)
so that the apply_synchronized call goes out to our switch instead of to
iptables. I was wondering if anyone else had tried a similar kludge or
if people had other recommendations for how to approach this kind of thing.

rw2


__________________________________________________________________________
OpenStack Development Mailing List (not for usage questions)
Unsubscribe: OpenStack-dev-request at lists.openstack.org?subject:unsubscribe
http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack-dev



More information about the OpenStack-dev mailing list