[NETVIRT-221] FIxed rules are not added when no SG is associated with the port. Created: 27/Oct/16 Updated: 03/May/18 Resolved: 26/Apr/18 |
|
| Status: | Resolved |
| Project: | netvirt |
| Component/s: | General |
| Affects Version/s: | Carbon, Oxygen |
| Fix Version/s: | Oxygen-SR2, Fluorine |
| Type: | Bug | Priority: | Medium |
| Reporter: | Aswin Suryanarayanan | Assignee: | Kiran Vasudeva |
| Resolution: | Done | Votes: | 0 |
| Labels: | None | ||
| Remaining Estimate: | 0 minutes | ||
| Time Spent: | 1 week | ||
| Original Estimate: | 1 week | ||
| Environment: |
Operating System: All |
||
| External issue ID: | 7049 |
| Description |
|
Fixed rules are expected to be added when a VM is spawned without SG, which is not added. This issue was observed when writing IT test cases. When no SG is explicity associated when spawning a VM in openstack, openstack associates default SG and hence the issue is not observed. |
| Comments |
| Comment by Sam Hague [ 03/Apr/17 ] |
|
Aswin is this still valid? |
| Comment by Aswin Suryanarayanan [ 04/Apr/17 ] |
|
Yes it is valid, no fix has been done for this. |
| Comment by Sam Hague [ 05/Apr/18 ] |
|
Aswin, is this still valid? I think we add default rules now right? |
| Comment by Aswin Suryanarayanan [ 06/Apr/18 ] |
|
Yes this is valid, the antispoofing rules are skipped when there is not SG in the port even when port security is enabled. |