Need policy action as DENY

Bug #1496504 reported by Biju Varghese
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
Group Based Policy
Triaged
Wishlist
Unassigned

Bug Description

Deny action is needed for the policy action along with Allow.
There can be a requirement to deny specific set of ports from a range of allowed ports.
In ACI , we also have taboo which is deny.

Revision history for this message
Sumit Naiksatam (snaiksat) wrote :

GBP follows a while-list based model where-in everything is denied by default and you open up connectivity as required. In this model explicit deny is not required. I believe you are making a case for specifying exceptions in cases when connectivity is explicitly opened.

Changed in group-based-policy:
milestone: none → next
importance: Undecided → Wishlist
status: New → Triaged
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.