[Openstack-operators] Security group rules not working on instances kilo

raju raju.roks at gmail.com
Thu Apr 21 23:26:01 UTC 2016


Hi,

I am running into a issue where security group rules are not applying to
instances when I create a new security group with default rules it should
reject all incoming traffic but it is allowing everything without blocking

here is my config for nova :

security_group_api = neutron
firewall_driver = nova.virt.firewall.NoopFirewallDriver

and in ml2.con.ini

firewall_driver =
neutron.agent.linux.iptables_firewall.OVSHybridIptablesFirewallDriver

iptables service is running on all the nodes, please suggest me if  I miss
anything.


Thanks.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openstack.org/pipermail/openstack-operators/attachments/20160421/c91554bd/attachment.html>


More information about the OpenStack-operators mailing list