[Openstack-operators] Security Groups and Metadata Service

Saverio Proto zioproto at gmail.com
Tue Dec 5 09:32:10 UTC 2017


Hello,

we have this recurring problem with our users.

An advanced user deletes all the default security groups to create his
own. This user will define only ingress rules.

Because there is no egress rule, the cloud-init will fail to open a
connection to the metadata service.

The user will open a ticket that he cant login into the VM, because of
corse the SSH key was not injected.

Does anyone has a good solution to prevent the user from setting the
system in a such a way that does not work ??

thank you

Saverio



More information about the OpenStack-operators mailing list