Re: Reg:Issue in systemvm firewall

2013-11-07 Thread prakash
Hi,

 Traffic is not blocked.

 ISSUE:
 =
 After restart cloud-management service systemvm and guestvm are
inaccessible in basic zone network offering with sg.

 Regards,
 Prakash.M

>
> Security groups rules  behaviour will not change if management
> server/host/vms is restarted.
>
> By default  only guest vm ingress traffic is blocked. You need to open up
> ingress rules to access user vms.
>
> Check what type of traffic your are sending and which iptables rules are
> blocking it.
>
> Thanks,
> Jayapal
>
> On 07-Nov-2013, at 6:04 PM, prak...@assistanz.com wrote:
>
>> Hi,
>>
>> I have configured xenserver clusters in cloudstack with security group
>> as
>> network offering in basiczone. Everything is working fine but i am
>> facing
>> major issue, while restart management server or xenserver my systemvms
>> and other vms in that zone automatically block all incoming traffic by
>> default. We are unable to access systemvm(console vm) and other vms
>> after
>> flush iptables in system vm and guest vm. I am able to access
>> everything.
>> Is this bug or cloudstack default block all incoming traffic in
>> production environment after restarted cloudstack.
>>
>> Regards,
>> Prakash.M
>>
>>
>
>




Re: Reg:Issue in systemvm firewall

2013-11-07 Thread Jayapal Reddy Uradi

Security groups rules  behaviour will not change if management server/host/vms 
is restarted.

By default  only guest vm ingress traffic is blocked. You need to open up 
ingress rules to access user vms.

Check what type of traffic your are sending and which iptables rules are 
blocking it.

Thanks,
Jayapal

On 07-Nov-2013, at 6:04 PM, prak...@assistanz.com wrote:

> Hi,
> 
> I have configured xenserver clusters in cloudstack with security group as
> network offering in basiczone. Everything is working fine but i am facing
> major issue, while restart management server or xenserver my systemvms
> and other vms in that zone automatically block all incoming traffic by
> default. We are unable to access systemvm(console vm) and other vms after
> flush iptables in system vm and guest vm. I am able to access everything.
> Is this bug or cloudstack default block all incoming traffic in
> production environment after restarted cloudstack.
> 
> Regards,
> Prakash.M
> 
> 



Reg:Issue in systemvm firewall

2013-11-07 Thread prakash
Hi,

 I have configured xenserver clusters in cloudstack with security group as
network offering in basiczone. Everything is working fine but i am facing
major issue, while restart management server or xenserver my systemvms
and other vms in that zone automatically block all incoming traffic by
default. We are unable to access systemvm(console vm) and other vms after
flush iptables in system vm and guest vm. I am able to access everything.
Is this bug or cloudstack default block all incoming traffic in
production environment after restarted cloudstack.

 Regards,
 Prakash.M