commit e49688be9844b9ae32e14747ad95a07be0fa142c
Author: Harald Jensås <email address hidden>
Date: Sun Apr 22 13:12:01 2018 +0200
Masqeurading: NOT persist ephemeral firewall rules
Puppet class tripleo::firewall makes an effort to not
persist ephemeral firewall rules created by neutron and
ironic-inspector. In instack-undercloud the rules are
persisted anyway because we run iptables-save when
configuring masquerading.
This changes the masquerading to also filter the rules,
similar to what we do in tripleo::firewall.
Additionally filtering of the Ironic Inspector iptables
pxe_filter rules are implemented.
Reviewed: https:/ /review. openstack. org/563467 /git.openstack. org/cgit/ openstack/ instack- undercloud/ commit/ ?id=e49688be984 4b9ae32e14747ad 95a07be0fa142c
Committed: https:/
Submitter: Zuul
Branch: master
commit e49688be9844b9a e32e14747ad95a0 7be0fa142c
Author: Harald Jensås <email address hidden>
Date: Sun Apr 22 13:12:01 2018 +0200
Masqeurading: NOT persist ephemeral firewall rules
Puppet class tripleo::firewall makes an effort to not inspector. In instack-undercloud the rules are
persist ephemeral firewall rules created by neutron and
ironic-
persisted anyway because we run iptables-save when
configuring masquerading.
This changes the masquerading to also filter the rules,
similar to what we do in tripleo::firewall.
Additionally filtering of the Ironic Inspector iptables
pxe_filter rules are implemented.
Closes-Bug: #1765700 58c6e1a3b4b772f 0a365f79e39
Change-Id: I0cebfe41779819