tripleo-ansible - firewall role does not open ipv6-icmp
Bug #1845175 reported by
Harald Jensås
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
tripleo |
Fix Released
|
High
|
Harald Jensås |
Bug Description
puppet-tripleo have special handling for protocol 'icmp'. It automatically modifies the rule to enable ipv6-icmp in ip6tables. The tripleo-ansible firewall role does not have any such handling. Based on examining the code[2] it will create a rule for 'icmp' in ip6tables which is incorrect.
[1] https:/
[2] https:/
To post a comment you must log in.
Fix proposed to branch: master /review. opendev. org/684278
Review: https:/