[openstack-dev] [neutron] Missing openvswitch filter rules

Ihar Hrachyshka ihrachys at redhat.com
Mon Jun 15 09:13:26 UTC 2015


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

On 06/13/2015 04:38 PM, Jeff Feng wrote:
> *I'm using OVSHybridIptablesFirewallDriver in
> ovs_neutron_plugin.ini* / [securitygroup] firewall_driver = 
> neutron.agent.linux.iptables_firewall.OVSHybridIptablesFirewallDriver
>
> 
enable_security_group = True/
> 
> *But I can not see any related rules added in iptables after
> restart neutron-openvswitch-agent.** ** Anyone have seen same issue
> before ? This is in Juno release.* *any idea which configuration
> could be wrong/missed ? **

I would start from looking into ovs agent log. Do
iptables-save/restore calls succeed there? Also, obviously a dumb
question, but worth being asked: have you actually started any instances
?

Ihar
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2

iQEcBAEBCAAGBQJVfpczAAoJEC5aWaUY1u57dVMH/R0wgGXNH/BwROCGcgm+q+L8
6kyvmiczyhZMn6T0261tnyem4aHONgy3BbZ9bDTSFEGNd8DgpTfSFF5HPb77/nju
NbKdPj52pIFlKY5tH54DWrrBAQ/Gulahj+/WxpNFT71s3OUGhaFfhnUKDiusIKYW
LflttkA1p++5uSFtxjBZshz4sc/hJLOJneYtxBscwD6QhMbHi5Rx2HuHTjz1LKp+
1Sjsd/S0jrKtLvmY4A19CFgcpC3Nl/+LUeZZpp6cytfQvDwSH/bLDJiAJGAkvA2g
tT9nrjuM7Yx86ki7vX/cTuUPZiNQpsZ6lf7BtGbahmWIsKeteLXr6W22RSXpmk4=
=YMpI
-----END PGP SIGNATURE-----



More information about the OpenStack-dev mailing list