Comment 4 for bug 1528272

Revision history for this message
Igor Shishkin (teran) wrote : Re: Problem with iso build on new server inf fuel-ci

The issue is about firewall rules:

......
-A INPUT -m comment --comment "9999 - drop all" -j DROP
-A FORWARD -o docker0 -j DOCKER
-A FORWARD -o docker0 -m conntrack --ctstate RELATED,ESTABLISHED -j ACCEPT
-A FORWARD -i docker0 ! -o docker0 -j ACCEPT
-A FORWARD -i docker0 -o docker0 -j ACCEPT
-A FORWARD -o docker0 -m comment --comment "1000 - docker rule" -j DOCKER
-A FORWARD -o docker0 -m comment --comment "1001 - docker rule" -m conntrack --ctstate RELATED,ESTABLISHED -j ACCEPT
-A FORWARD -i docker0 -o docker0 -m comment --comment "1002 - docker rule" -j ACCEPT
-A FORWARD -i docker0 ! -o docker0 -m comment --comment "1003 - docker rule" -j ACCEPT
-A DOCKER -d 172.17.0.11/32 ! -i docker0 -o docker0 -p tcp -m tcp --dport 80 -j ACCEPT
....