fwaas:Error not thrown when setting protocol is icmp and destination /source port while creating firewall rule
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
neutron |
Fix Released
|
Medium
|
Elena Ezhova |
Bug Description
Error not thrown when setting protocol as icmp and destination /source port while creating firewall rule
Steps to Reproduce:
create firewall rule with protocol as icmp and destination port as 20
Actual Results:
It is creating firewal rule with protocol as icmp and destination port as 20 in cli. However since icmp protocol doesn't use source/destination port , It was taken only as ICMP in the output of iptable-save in router
Expected Results:
the cli should throw error
-A neutron-
-A neutron-
-A neutron-
-A neutron-
-A neutron-
-A neutron-
-A neutron-
-A neutron-
-A neutron-
-A neutron-
-A neutron-
-A neutron-
root@IH-HL-OSC:~# fwrc --name r9 --protocol icmp --destination-port 20 --action deny
Created a new firewall_rule:
+------
| Field | Value |
+------
| action | deny |
| description | |
| destination_
| destination_port | 20 |------
| enabled | True |
| firewall_policy_id | |
| id | 29bca0ca-
| ip_version | 4 |
| name | r9 |
| position | |
| protocol | icmp |
| shared | False |
| source_ip_address | |
| source_port | |
| tenant_id | 8aac6cceec774de
+------
Changed in neutron: | |
assignee: | nobody → Eugene Nikanorov (enikanorov) |
summary: |
- fwaas:Error not thrown when setting protocol as icmp and destination + fwaas:Error not thrown when setting protocol is icmp and destination /source port while creating firewall rule |
Changed in neutron: | |
assignee: | Eugene Nikanorov (enikanorov) → Elena Ezhova (eezhova) |
Changed in neutron: | |
importance: | Undecided → Medium |
milestone: | none → juno-2 |
Changed in neutron: | |
status: | Fix Committed → Fix Released |
Changed in neutron: | |
milestone: | juno-2 → 2014.2 |
Fix proposed to branch: master /review. openstack. org/99372
Review: https:/