Comment 4 for bug 1657518

Revision history for this message
Luke Short (ekultails) wrote :

I would think it would be best to at least add firewalld not being supported to the documentation. Since it's a front-end to iptables anyways, it would be duplicate effort to support both iptables and firewalld. Operators relying on firewalld may be caught off-guard if OpenStack-Ansible removes their firewall management tool of choice.

If we're also going to disable it, maybe we should prompt the end-user (via Ansible) to see if they're okay with turning off and disabling firewalld (if it's on and/or enabled). We would also need to make sure that the iptables-services package is installed.

http://docs.ansible.com/ansible/playbooks_prompts.html