On Wed, Nov 13, 2013 at 08:38:08AM +0000, RDO Forum wrote:
This is someone asking whether the use of firewall conflicts with the
use of OpenStack. It looks like the answer is "it totally does".
That is, packstack sets up a bunch of firewall rules, but doesn't
actually install them via firewall-cmd...so when someone goes to
reboot their system, they will lose all connectivity.
It seems as if the puppet modules should either (a) disable firewalld
and install iptables-services, or (b) install firewall rules using the
proper framework so that they are persistent.
I've opened
https://bugzilla.redhat.com/show_bug.cgi?id=1029929 on
this issue.
--
Lars Kellogg-Stedman <lars(a)redhat.com> | larsks @ irc
Cloud Engineering / OpenStack | " " @ twitter