summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSoren Hansen <soren@linux2go.dk>2011-03-16 18:56:47 +0000
committerTarmac <>2011-03-16 18:56:47 +0000
commit9fa74cdae1dcf94586ddb7924c044cb26112b67b (patch)
tree8a592e990192a9414dc8ae065b8543eb3129b600
parentdfd0e8a32ae40043a78c12fb871c11bb9bd0f4c3 (diff)
parent8a41046dc7cafb19afb6719866b11681daaa9082 (diff)
downloadnova-9fa74cdae1dcf94586ddb7924c044cb26112b67b.tar.gz
nova-9fa74cdae1dcf94586ddb7924c044cb26112b67b.tar.xz
nova-9fa74cdae1dcf94586ddb7924c044cb26112b67b.zip
Add missing fallback chain for ipv6.
-rw-r--r--nova/virt/libvirt_conn.py2
1 files changed, 2 insertions, 0 deletions
diff --git a/nova/virt/libvirt_conn.py b/nova/virt/libvirt_conn.py
index d7bdc3faa..6e564d0cb 100644
--- a/nova/virt/libvirt_conn.py
+++ b/nova/virt/libvirt_conn.py
@@ -1597,6 +1597,8 @@ class IptablesFirewallDriver(FirewallDriver):
self.iptables.ipv4['filter'].add_chain('sg-fallback')
self.iptables.ipv4['filter'].add_rule('sg-fallback', '-j DROP')
+ self.iptables.ipv6['filter'].add_chain('sg-fallback')
+ self.iptables.ipv6['filter'].add_rule('sg-fallback', '-j DROP')
def setup_basic_filtering(self, instance):
"""Use NWFilter from libvirt for this."""