Reviewed: https://review.openstack.org/205064 Committed: https://git.openstack.org/cgit/openstack/neutron/commit/?id=f23eb3290a1943c12e0ffbfd812ff5443f57af3c Submitter: Jenkins Branch: master
commit f23eb3290a1943c12e0ffbfd812ff5443f57af3c Author: Bertrand Lallau <email address hidden> Date: Thu Jul 23 11:31:49 2015 +0200
Only mark metadata packets on internal interfaces
Currently iptables rules set on L3 agent with metadata_proxy enabled mark all packets coming from all interfaces including external interfaces.
This change updates PREROUTING rules from MANGLE table to mark packets only from internal interfaces.
Change-Id: I01549df7b99be84cd46b6f97a5fd62aec1f43275 Closes-Bug: #1477553
Reviewed: https:/ /review. openstack. org/205064 /git.openstack. org/cgit/ openstack/ neutron/ commit/ ?id=f23eb3290a1 943c12e0ffbfd81 2ff5443f57af3c
Committed: https:/
Submitter: Jenkins
Branch: master
commit f23eb3290a1943c 12e0ffbfd812ff5 443f57af3c
Author: Bertrand Lallau <email address hidden>
Date: Thu Jul 23 11:31:49 2015 +0200
Only mark metadata packets on internal interfaces
Currently iptables rules set on L3 agent with metadata_proxy enabled
mark all packets coming from all interfaces including external interfaces.
This change updates PREROUTING rules from MANGLE table to mark packets
only from internal interfaces.
Change-Id: I01549df7b99be8 4cd46b6f97a5fd6 2aec1f43275
Closes-Bug: #1477553