default SG rule should have Ingress IPv6 allow rule (for traffic within default SG)

Bug #1425412 reported by Vedamurthy Joshi
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
Juniper Openstack
Fix Committed
High
Sachin Bansal
R2.1
Fix Committed
High
Sachin Bansal

Bug Description

R2.1 Build 36 Ubuntu 12.04.3 Icehouse

The default SG has these rules :

ingress IPv4 security group default protocol any ports any
egress IPv4 network 0.0.0.0/0 protocol any ports any
egress IPv6 network ::/0 protocol any ports any

We should have one more to allow ingress IPv6

ingress IPv6 security group default protocol any ports any

Revision history for this message
Rahul (rahuls) wrote :

UI also needs to handle the allow ingress for IPv6, please move to UI once it is fixed on neutron side.

Revision history for this message
OpenContrail Admin (ci-admin-f) wrote : A change has been merged

Reviewed: https://review.opencontrail.org/7878
Committed: http://github.org/Juniper/contrail-controller/commit/6d925a70eaeebbf07e671c59107b5d7c3975a489
Submitter: Zuul
Branch: master

commit 6d925a70eaeebbf07e671c59107b5d7c3975a489
Author: Sachin Bansal <email address hidden>
Date: Thu Feb 26 10:19:48 2015 -0800

Set ingress rule for both IPv4 and IPv6 in default security group

Change-Id: Ib862715173a889b71638784882d460f3f7355dc3
Closes-Bug: 1425441
Closes-Bug: 1425412

Changed in juniperopenstack:
status: New → Fix Committed
alok kumar (kalok)
tags: added: automation
Revision history for this message
alok kumar (kalok) wrote :

R2.1 does not have the fix.

Revision history for this message
OpenContrail Admin (ci-admin-f) wrote : R2.1

Review in progress for https://review.opencontrail.org/8219
Submitter: Sachin Bansal (<email address hidden>)

Revision history for this message
OpenContrail Admin (ci-admin-f) wrote : A change has been merged

Reviewed: https://review.opencontrail.org/8219
Committed: http://github.org/Juniper/contrail-controller/commit/b631c06da21f52d4de22153e92d7238a999c3e17
Submitter: Zuul
Branch: R2.1

commit b631c06da21f52d4de22153e92d7238a999c3e17
Author: Sachin Bansal <email address hidden>
Date: Thu Feb 26 10:19:48 2015 -0800

Set ingress rule for both IPv4 and IPv6 in default security group

Change-Id: Ib862715173a889b71638784882d460f3f7355dc3
Closes-Bug: 1425441
Closes-Bug: 1425412

To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.