[Openstack-security] [Bug 1507815] Fix merged to vmware-nsx (stable/liberty)

OpenStack Infra 1507815 at bugs.launchpad.net
Wed Nov 18 09:29:58 UTC 2015


Reviewed:  https://review.openstack.org/246806
Committed: https://git.openstack.org/cgit/openstack/vmware-nsx/commit/?id=0decbf8b4289a2f9e6095992043107cacd06dca3
Submitter: Jenkins
Branch:    stable/liberty

commit 0decbf8b4289a2f9e6095992043107cacd06dca3
Author: Boden R <bodenvmw at gmail.com>
Date:   Fri Oct 16 13:04:57 2015 -0600

    psec profile distributed locking
    
    Change the current NSX v3 plugin implementation
    to use distributed locking when initializing the
    port security spoofguard profile.
    
    stable/liberty backport candidate
    
    Partial-bug: #1507815
    
    Change-Id: I26419f757399aba21c131cefff9745ffd377ec98
    (cherry picked from commit 95342f389cc965f936388c25d5c73760b9b9cef9)

-- 
You received this bug notification because you are a member of OpenStack
Security, which is subscribed to OpenStack.
https://bugs.launchpad.net/bugs/1507815

Title:
  Security group is dropping DHCP packet

Status in vmware-nsx:
  Fix Committed

Bug description:
  The instances launched are not able to get IP addresses because the
  DHCP packet are dropped by security group. If we open up OS default
  Block all, instances are able to acquire IP addresses. I saw we only
  allow DHCP-Client packet in the OS default section. But I believe we
  should also allow DHCP-Server.

To manage notifications about this bug go to:
https://bugs.launchpad.net/vmware-nsx/+bug/1507815/+subscriptions




More information about the Openstack-security mailing list