Feature #3204

Dynamically push out changes to Security Groups

Added by Tino Vázquez almost 5 years ago. Updated over 3 years ago.

Status:ClosedStart date:09/29/2014
Priority:HighDue date:
Assignee:Ruben S. Montero% Done:

0%

Category:Drivers - Network
Target version:Release 5.0
Resolution:fixed Pull request:

Description

Call the network driver to update the set of iptables rules

Associated revisions

Revision 733a1945
Added by Ruben S. Montero over 3 years ago

feature #3204: Security group initial commit

Revision 0862d6c1
Added by Ruben S. Montero over 3 years ago

feature #3204: fix typo

Revision 54097ec6
Added by Ruben S. Montero over 3 years ago

feature #3204: Update VM SECURITY_GROUP_RULES in template

Revision 3a013231
Added by Ruben S. Montero over 3 years ago

feature #3204: Handle UPDATESG driver messages. Refactor SG rules
get/set

Revision fa478f38
Added by Ruben S. Montero over 3 years ago

feature #3204: Expose XML-RPC API, OCA ruby bindings and CLI command

Revision a9e17802
Added by Ruben S. Montero over 3 years ago

feature #3204: Fix update procedure. Add information to CLI commands.

Revision 0c324d52
Added by Ruben S. Montero over 3 years ago

feature #3204: Add security group id to driver message.

Revision b8504ecc
Added by Ruben S. Montero over 3 years ago

feature #3204: Fix driver issues. Add missing driver actions.

Revision 6365bbcc
Added by Ruben S. Montero over 3 years ago

feature #3204: Rename ObjectCollection methods. Better model for
ObjectColletion for User, Group & Datastore. Add auth_op to Commit
operation

Revision 3db008ea
Added by Ruben S. Montero over 3 years ago

feature #3204: Make it work with out migrator

Revision 9e4af1eb
Added by Ruben S. Montero over 3 years ago

feature #3204: Security Group dynamic update. Add support to update SG
rules of running VMs though a new one.secgroup.commit operation

Revision db3c57e1
Added by Carlos Martín over 3 years ago

Feature #3204: Add new sgroup elements in onedb migrator

Revision ea102f56
Added by Ruben S. Montero over 3 years ago

feature #3204: Fix empty message for main_action

Revision a72f5e00
Added by Carlos Martín over 3 years ago

Feature #3204: Automatic commit after secgroup rule update

Revision 9ca8ecf3
Added by Jaime Melis over 3 years ago

Feature #3204: Choose correct xpath filters

Revision 8cbe0f3b
Added by Carlos Martín over 3 years ago

Feature #3204: Show updated/updating secgroup VMs in sunstone

Revision 76694ca8
Added by Carlos Martín over 3 years ago

Feature #3204: Fix onesecgroup commit description

Revision 0b413e76
Added by Carlos Martín over 3 years ago

Feature #3204: Add the SG commit action to sunstone

Revision e2e8171c
Added by Carlos Martín over 3 years ago

Feature #3204: Remove commit --recover from sunstone

History

#1 Updated by Tino Vázquez almost 5 years ago

  • Tracker changed from Feature to Backlog
  • Priority changed from Normal to High

#2 Updated by Ruben S. Montero over 4 years ago

  • Status changed from New to Pending

#3 Updated by Christian Hüning over 4 years ago

Do you mean to update existing VMs with new rules?

#4 Updated by Ruben S. Montero over 4 years ago

Christian Hüning wrote:

Do you mean to update existing VMs with new rules?

Exactly

#5 Updated by Ruben S. Montero about 4 years ago

Also look at this:

https://forum.opennebula.org/t/how-to-manage-openvswitch-flows-with-opennebula/701/6

to expose this functionality to recreate flows/iptables rules

#6 Updated by Justin Riley over 3 years ago

Just dropping a note that this is really important - security groups are almost useless without this feature for us...

#7 Updated by Ruben S. Montero over 3 years ago

  • Target version set to Release 5.0

#8 Updated by Ruben S. Montero over 3 years ago

  • Tracker changed from Backlog to Feature
  • Status changed from Pending to New

#9 Updated by Ruben S. Montero over 3 years ago

  • Assignee set to Ruben S. Montero

#10 Updated by Ruben S. Montero over 3 years ago

  • Status changed from New to Closed
  • Resolution set to fixed

Also available in: Atom PDF