Managing Security bewteen account in Advanced Zone without SG

2023-05-16 Thread Pratik Chandrakar
Hi all, Curious to know how others are managing isolation between VMs of different accounts in the Advanced Zone without SG deployment, as most users opt for default_allow policy for their VPC. Because of default_allow policy all ports are opened between public ip (static nat) irrespective of VLAN

Re: Managing Security bewteen account in Advanced Zone without SG

2023-05-17 Thread Logeswaran T
Hi Pratik, We now have a request open in cloudstack github for a VPC ACL issue. https://github.com/apache/cloudstack/issues/7483 The changes are tracked in this thread. Regards, Loges www.stackbill.com On Wed, May 17, 2023 at 11:28 AM Pratik Chandrakar < chandrakarpra...@gmail.com> wrote: > H

Re: Managing Security bewteen account in Advanced Zone without SG

2023-05-17 Thread Pratik Chandrakar
Hi Loges, Thanks for the update. On Wed, May 17, 2023 at 12:59 PM Logeswaran T wrote: > Hi Pratik, > > We now have a request open in cloudstack github for a VPC ACL issue. > > https://github.com/apache/cloudstack/issues/7483 > > The changes are tracked in this thread. > > Regards, > Loges > www

Re: Managing Security bewteen account in Advanced Zone without SG

2023-05-18 Thread Jithin Raju
Security bewteen account in Advanced Zone without SG Hi Loges, Thanks for the update. On Wed, May 17, 2023 at 12:59 PM Logeswaran T wrote: > Hi Pratik, > > We now have a request open in cloudstack github for a VPC ACL issue. > > https://github.com/apache/cloudstack/issues/7483 >