66d4431f99
Currently, auto associate default FWG works only one time and the logic is broken if the new port is a DHCP port or router port. This patch fixes the problem by validating if a port is a VM port or not, ignores port binding failed or unbound and also adds trusted port handling. In addition, for security perspective, 'auto_associate_default_firewall_group' CfgOpt is no longer used. Automatic association with default firewall group with VM port works by default. Closes-Bug: #1746404 Co-Authored-By: Yushiro FURUKAWA<y.furukawa_2@jp.fujitsu.com> Co-Authored-By: Chandan Dutta Chowdhury<chandanc@juniper.net> Change-Id: Ib567c0e0333335a99b851162d87f17f1a8ceb2dd |
||
---|---|---|
devstack | ||
doc/source | ||
etc | ||
neutron_fwaas | ||
releasenotes | ||
tools | ||
.coveragerc | ||
.gitignore | ||
.gitreview | ||
.mailmap | ||
.pylintrc | ||
.testr.conf | ||
.zuul.yaml | ||
CONTRIBUTING.rst | ||
HACKING.rst | ||
LICENSE | ||
README.rst | ||
TESTING.rst | ||
babel.cfg | ||
requirements.txt | ||
setup.cfg | ||
setup.py | ||
test-requirements.txt | ||
tox.ini |
README.rst
Team and repository tags
Welcome!
This package contains the code for the Neutron Firewall as a Service (FWaaS) service. This package requires Neutron to run.
External Resources:
The homepage for Neutron is: https://launchpad.net/neutron. Use this site for asking for help, and filing bugs. We use a single Launchpad page for all Neutron projects.
Code is available on git.openstack.org at: <https://git.openstack.org/cgit/openstack/neutron-fwaas>.
Please refer to Neutron documentation for more information: Neutron README.rst