Advertisement
Guest User

Untitled

a guest
Apr 26th, 2015
222
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.02 KB | None | 0 0
  1. From: =?UTF-8?q?Mathieu=20Gagn=C3=A9?= <mgagne@iweb.com>
  2. Date: Thu, 10 Jul 2014 14:22:01 -0400
  3. Subject: Add ability to still use Nova firewall with Neutron security group
  4.  
  5. We need the Nova firewall to add anti-spoofing rules and for Ceilometer
  6. to indirectly set the correct resource id for Nova network samples.
  7. ---
  8. nova/tests/virt/libvirt/test_libvirt_vif.py | 8 --------
  9. nova/virt/libvirt/vif.py | 2 --
  10. 2 files changed, 10 deletions(-)
  11.  
  12. diff --git a/nova/tests/virt/libvirt/test_libvirt_vif.py b/nova/tests/virt/libvirt/test_libvirt_vif.py
  13. index ed78a5c..babf92a 100644
  14. --- a/nova/tests/virt/libvirt/test_libvirt_vif.py
  15. +++ b/nova/tests/virt/libvirt/test_libvirt_vif.py
  16. @@ -718,14 +718,6 @@ class LibvirtVifTestCase(test.TestCase):
  17. self._assertTypeAndMacEquals(node, "bridge", "source", "bridge",
  18. self.vif_ovs_hybrid, br_want, 0)
  19.  
  20. - def test_direct_plug_with_port_filter_cap_no_nova_firewall(self):
  21. - d = vif.LibvirtGenericVIFDriver(self._get_conn())
  22. - br_want = self.vif_midonet['devname']
  23. - xml = self._get_instance_xml(d, self.vif_ovs_filter_cap)
  24. - node = self._get_node(xml)
  25. - self._assertTypeAndMacEquals(node, "ethernet", "target", "dev",
  26. - self.vif_ovs_filter_cap, br_want)
  27. -
  28. def _check_neutron_hybrid_driver(self, d, vif, br_want):
  29. self.flags(firewall_driver="nova.virt.firewall.IptablesFirewallDriver")
  30. xml = self._get_instance_xml(d, vif)
  31. diff --git a/nova/virt/libvirt/vif.py b/nova/virt/libvirt/vif.py
  32. index f37b769..6ea46c8 100644
  33. --- a/nova/virt/libvirt/vif.py
  34. +++ b/nova/virt/libvirt/vif.py
  35. @@ -154,8 +154,6 @@ class LibvirtGenericVIFDriver(LibvirtBaseVIFDriver):
  36. ("qvo%s" % iface_id)[:network_model.NIC_NAME_LEN])
  37.  
  38. def get_firewall_required(self, vif):
  39. - if vif.is_neutron_filtering_enabled():
  40. - return False
  41. if CONF.firewall_driver != "nova.virt.firewall.NoopFirewallDriver":
  42. return True
  43. return False
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement