nova reorders all iptables rules on component start
Bug #1116562 reported by
Chet Burgess
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
OpenStack Compute (nova) |
Fix Released
|
Undecided
|
Chet Burgess |
Bug Description
There's currently no method for guaranteeing iptables rules ordering on any system running nova. This is because nova adds and removes chains, reordering all the rules on the system. The goal of this patch is to provide a method for administrators to have a deterministic way of placing rules both before and after nova's own rulesets.
Changed in nova: | |
assignee: | nobody → Chet Burgess (cfb-n) |
status: | New → In Progress |
Changed in nova: | |
milestone: | none → grizzly-3 |
status: | Fix Committed → Fix Released |
Changed in nova: | |
milestone: | grizzly-3 → 2013.1 |
To post a comment you must log in.
Fix proposed to branch: master /review. openstack. org/21484
Review: https:/