[ https://issues.apache.org/jira/browse/CLOUDSTACK-10317?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16390939#comment-16390939 ]
ASF GitHub Bot commented on CLOUDSTACK-10317: --------------------------------------------- DaanHoogland closed pull request #2476: CLOUDSTACK-10317: Fix SNAT rules for additional public nics URL: https://github.com/apache/cloudstack/pull/2476 This is a PR merged from a forked repository. As GitHub hides the original diff on merge, it is displayed below for the sake of provenance: As this is a foreign pull request (from a fork), the diff is supplied below (as it won't show otherwise due to GitHub magic): diff --git a/systemvm/debian/opt/cloud/bin/cs/CsAddress.py b/systemvm/debian/opt/cloud/bin/cs/CsAddress.py index 42992b55123..dbafa1df555 100755 --- a/systemvm/debian/opt/cloud/bin/cs/CsAddress.py +++ b/systemvm/debian/opt/cloud/bin/cs/CsAddress.py @@ -388,7 +388,7 @@ def fw_router(self): self.fw.append(["mangle", "", "-A VPN_%s -j RETURN" % self.address['public_ip']]) self.fw.append(["nat", "", - "-A POSTROUTING -o eth2 -j SNAT --to-source %s" % self.address['public_ip']]) + "-A POSTROUTING -o %s -j SNAT --to-source %s" % (self.dev, self.cl.get_eth2_ip())]) self.fw.append(["mangle", "", "-A PREROUTING -i %s -m state --state NEW " % self.dev + "-j CONNMARK --set-xmark %s/0xffffffff" % self.dnum]) ---------------------------------------------------------------- This is an automated message from the Apache Git Service. To respond to the message, please log on GitHub and use the URL above to go to the specific comment. For queries about this service, please contact Infrastructure at: us...@infra.apache.org > In case of multiple-public ips, snat fails to work for addtional public > nics/network for guest traffic > ------------------------------------------------------------------------------------------------------ > > Key: CLOUDSTACK-10317 > URL: https://issues.apache.org/jira/browse/CLOUDSTACK-10317 > Project: CloudStack > Issue Type: Bug > Security Level: Public(Anyone can view this level - this is the > default.) > Reporter: Rohit Yadav > Assignee: Rohit Yadav > Priority: Minor > Fix For: 4.12.0.0, 4.11.1.0 > > > If a VR has two+ public nics, traffic from guest VM fails to be NAT-ed > correctly for traffic towards additional public nics. -- This message was sent by Atlassian JIRA (v7.6.3#76005)