Re: [Openstack] Managing iptables with OpenStack Folsom (using Quantum)

2013-09-04 Thread Razique Mahroua
That's rightNot redone everytime but updated and checked non-stopWhen you restart the services then yes, everything is flushed and redone, so if you manually enter some iptables rules, they won't persist afterwards :) Razique Mahroua - Nuage & Corazique.mahr...@gmail.comTel : +33 9 72 37 94 15 Le

Re: [Openstack] Managing iptables with OpenStack Folsom (using Quantum)

2013-09-03 Thread Craig E. Ward
Razique, Thanks for the response. If I understand you correctly, you're saying that the iptables rules are redone by nova-compute or the quantum agents every time a network is added or removed and because of that, static rules will be lost. Is that correct? The installation I'm working with

Re: [Openstack] Managing iptables with OpenStack Folsom (using Quantum)

2013-08-29 Thread Razique Mahroua
That means you shouldn't use iptables for your custom rules since OpenStack manages iptables and everytime the network is updated, iptables is impacted. If you restart nova-netork for instance, then all the iptables rules are flushed and recreated according to your network topology.The iptables ser

[Openstack] Managing iptables with OpenStack Folsom (using Quantum)

2013-08-28 Thread Craig E. Ward
I have an OpenStack Folsom, with Quantum networking, installation that I'm having trouble getting additional rules into the iptables on nova-compute nodes. The online manual (http://docs.openstack.org/trunk/openstack-ops/content/iptables.html) states that "You must use OpenStack to manage iptab