Port range for vnc access is only 200 ports
Bug #1648664 reported by
Eugene Nikanorov
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
Fuel for OpenStack |
Fix Committed
|
Medium
|
Oleksiy Molchanov | ||
Mitaka |
Fix Released
|
Medium
|
Oleksiy Molchanov | ||
Newton |
Fix Committed
|
Medium
|
Oleksiy Molchanov |
Bug Description
Found on 9.1
By default there are only 200 ports available for console access to instances (5900-6100).
For powerfull computes that limit can be exceeded.
Need to extend default port range to 500-1000 ports.
description: | updated |
Changed in fuel: | |
milestone: | none → 9.2 |
milestone: | 9.2 → 11.0 |
assignee: | nobody → Oleksiy Molchanov (omolchanov) |
importance: | Undecided → Medium |
status: | New → Confirmed |
tags: | added: area-library |
tags: | added: on-verification |
tags: | removed: on-verification |
tags: | added: on-verification |
To post a comment you must log in.
Looks like that in Nova we rely on libvirtd to allocate a free port for each subsequent VM from the following range (configured in /etc/libvirt/ qemu.conf on the compute nodes):
# Override the port for creating both VNC and SPICE sessions (min). display_ port_min = 5900 display_ port_max = 65535
# This defaults to 5900 and increases for consecutive sessions
# or when ports are occupied, until it hits the maximum.
#
# Minimum must be greater than or equal to 5900 as lower number would
# result into negative vnc display number.
#
# Maximum must be less than 65536, because higher numbers do not make
# sense as a port number.
#
#remote_
#remote_
I.e. we would only need to tweak iptables rules.