Can not clear source or dest port (range) for existing firewall rule
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
neutron |
Won't Fix
|
Undecided
|
Jesse |
Bug Description
We need to give user a way to update firewall rule to clear source or dest port (range).
We can create a firewall-rule with source-ip-address and destination-
[root@node-1 ~]# neutron firewall-
Created a new firewall_rule:
+------
| Field | Value |
+------
| action | allow |
| description | |
| destination_
| destination_port | 22 |
| enabled | True |
| firewall_policy_id | |
| id | f44e6557-
| ip_version | 4 |
| name | |
| position | |
| protocol | tcp |
| shared | False |
| source_ip_address | 0.0.0.0/0 |
| source_port | 1234 |
| tenant_id | e8cf9c9245f24f2
+------
If we want to update this rule, and don't want set source_port or destination_port, we can not done it for now.
I expect to clear the source_port by using following command:
[root@node-1 ~]# neutron firewall-
Updated firewall_rule: 47cd4350-
[root@node-1 ~]# neutron firewall-rule-show 47cd4350-
+------
| Field | Value |
+------
| action | allow |
| description | |
| destination_
| destination_port | 22 |
| enabled | True |
| firewall_policy_id | |
| id | 47cd4350-
| ip_version | 4 |
| name | |
| position | |
| protocol | tcp |
| shared | False |
| source_ip_address | 0.0.0.0/0 |
| source_port | |
| tenant_id | e8cf9c9245f24f2
+------
Changed in neutron: | |
assignee: | nobody → Jesse (jesse-5) |
tags: | added: fwaas |
description: | updated |
Fix proposed to branch: master /review. openstack. org/413057
Review: https:/