I would like add support for ACL deny rules in VPC. Functional spec is available at [1] and jira ticket is [2]. As part of this feature, NetworkACLContainer will also be introduced to manage network ACLs.
This feature is item 2.16 in nTier Apps 2.0 requirements [3]. [1] https://cwiki.apache.org/confluence/display/CLOUDSTACK/Support+ACL+deny+rules [2] https://issues.apache.org/jira/browse/CLOUDSTACK-763 [3] https://cwiki.apache.org/confluence/display/CLOUDSTACK/nTier+Apps+2.0+Requirements