[Openstack] disable source nat by default

George Mihaiescu lmihaiescu at gmail.com
Mon May 18 10:39:03 UTC 2015


Couldn't you achieve the same goal with egress security rules?
Without SNAT enabled, those instances wouldn't be able to reach the
Internet at all, so no package updates, etc.
 On 18 May 2015 05:13, "Simone Spinelli" <simone.spinelli at gmail.com> wrote:

> Hi all,
>
> by default neutron routers have source nat enabled and they masquerade
> using the external ip address: you can disable this function using API once
> the router is created.
> Is there a way to disable this function by default (I mean create routers
> with source nat disabled )?
>
> Any help is appreciated.
>
> Best regards
>
> Simone
>
> _______________________________________________
> Mailing list:
> http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack
> Post to     : openstack at lists.openstack.org
> Unsubscribe :
> http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openstack.org/pipermail/openstack/attachments/20150518/64044d51/attachment.html>


More information about the Openstack mailing list