[Openstack] vm isolation in same tenant network

Marco Mariani marco.mariani at alterway.fr
Tue Jul 7 16:38:40 UTC 2015


Hi,

I'm using Neutron+VLAN. Is it possible to isolate VMs in the same tenant
network, and filter traffic according to security rules?

In my understanding the allow_same_net_traffic in nova.conf only affects
nova-network and not Neutron behavior.

On the same note, I'd like to forbid traffic to between VMs and floating
IPs, even if there is a router to allows egress traffic to the Internet...

Thanks
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openstack.org/pipermail/openstack/attachments/20150707/d0968fec/attachment.html>


More information about the Openstack mailing list