Make Linux firewall rules aligned to assigned cluster role
Registered by
Adam Heczko
It was observed that Fuel applies common set of iptables rules among all deployed nodes.
Even nodes with Ceph OSD daemons have applied rules more appropriate to API endpoints (controllers).
Expected behaviour:
Make iptables rules role aligned.
Apply appropriate and different set of firewall rules for:
- API endpoints / cloud controllers
- Cinder iSCSI nodes
- Ceph OSD nodes
- Swift nodes
- Compute nodes
- Mongo nodes
Blueprint information
- Status:
- Not started
- Approver:
- None
- Priority:
- Undefined
- Drafter:
- Adam Heczko
- Direction:
- Needs approval
- Assignee:
- None
- Definition:
- New
- Series goal:
- None
- Implementation:
- Unknown
- Milestone target:
- None
- Started by
- Completed by
Related branches
Related bugs
Sprints
Whiteboard
(?)