weizhouapache commented on issue #7483:
URL: https://github.com/apache/cloudstack/issues/7483#issuecomment-3430654589

   > > > Hi, I am facing the exact same issue in VPC network tier in ACS 
version 4.21. ACL is only applied for the private side port, not the public 
side port. Is this supposed to be fixed?
   > > 
   > > 
   > > [@chunkyen](https://github.com/chunkyen) I do not think so. what you 
need is the firewall-like feature (similar to firewall feature in isolated 
network)
   > 
   > Thank you for the quick reply. I thought the VPC ACL issue is supposed to 
be addressed as feature improvement since 2023. But maybe I misunderstood and 
this is about adding source CIDR in port forwarding (which I can see in 4.21). 
Is destination CIDR for network ACL in the roadmap?
   
   the network ACL configures the 
   - the destination CIDR of Ingress rule
   - the source CIDR of egress rule
   
   I think the source CIDR of load balancer and port forwarding fix the issue 
partially. It is good.
   the source CIDR of Static NAT is unsupported until now.


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]

Reply via email to