diff options
| author | Todd Willey <todd@ansolabs.com> | 2011-06-23 21:44:29 +0000 |
|---|---|---|
| committer | Tarmac <> | 2011-06-23 21:44:29 +0000 |
| commit | 654350a1cf93e8ecf8d38f07802e0c3ed7039562 (patch) | |
| tree | 9306635ab8cdba9f9a8fb8ae941cf8586b1c083a /bin/stack | |
| parent | 006cbeb5f145ea0e8ccf51163f4611d784876160 (diff) | |
| parent | 203f3f85b6d66735f52013cbe5a736ef82d7a083 (diff) | |
| download | nova-654350a1cf93e8ecf8d38f07802e0c3ed7039562.tar.gz nova-654350a1cf93e8ecf8d38f07802e0c3ed7039562.tar.xz nova-654350a1cf93e8ecf8d38f07802e0c3ed7039562.zip | |
This adds a way to create global firewall blocks that apply to all instances in your nova installation.
The mechanism for managing these rules is very similar to how security group rules are managed except there is only ever one instance of the provider rule table, as opposed to multiple security group tables. Each instance will simply jump into the provider firewall table as one of its first actions (before security groups, so these rules cannot be overridden on a per-user basis).
Most of the changes are straightforward if you understand how security groups work. There are a few small logging and variable name changes as well.
Right now this only exposes the creation of provider firewall rules. If we agree this is the best path forward I will quickly be adding a list and destroy method and updating nova-adminclient.
Diffstat (limited to 'bin/stack')
0 files changed, 0 insertions, 0 deletions
