663dad2a37
Docker will switch the FORWARD filter to DROP if it sets the ip_forward to 1. Previously we were doing this in a post configuration element rather than in the puppet run itself. This change moves the ip_forward=1 to puppet so it runs prior to docker being installed. Additionally we are ensuring that the full set of network rules are being added to the FORWARD filter because previously we were only setting half of them. This would allow us to actually not have to use ACCEPT as the default for the FORWARD filter but this would require additional testing. Conflicts: elements/puppet-stack-config/puppet-stack-config.yaml.template elements/undercloud-install/os-refresh-config/post-configure.d/98-undercloud-setup Change-Id: Ieae6a74f7269bd64606fd80a2a08b2058c24d2c5 Closes-Bug: #1750194 Closes-Bug: #1750874 (cherry picked from commit |
||
---|---|---|
.. | ||
os-apply-config | ||
os-refresh-config | ||
element-provides |