> -----Original Message-----
> From: Animesh Chaturvedi [mailto:animesh.chaturv...@citrix.com]
> Sent: Thursday, March 13, 2014 1:25 PM
> To: dev@cloudstack.apache.org
> Subject: RE: [VOTE] Apache CloudStack 4.3.0 (eighth round)
> 
> 
> 
> > -----Original Message-----
> > From: Nux! [mailto:n...@li.nux.ro]
> > Sent: Thursday, March 13, 2014 12:41 PM
> > To: dev@cloudstack.apache.org
> > Subject: Re: [VOTE] Apache CloudStack 4.3.0 (eighth round)
> >
> > On 13.03.2014 18:58, Nux! wrote:
> > > On 13.03.2014 00:26, Animesh Chaturvedi wrote:
> > >> Hi All,
> > >>
> > >>
> > >> I've created a 4.3.0 release, with the following artifacts up for a
> > >> vote:
> > >
> > > -1
> > >
> > > In Adv SG zone assigning secondary IPs to a NIC doesn't update the
> > > ipset accordingly on the agent/hv; it requires stopping/starting the
> > > VM.
> > > It's not a tragedy, but this was not the case in 4.2.1. Haven't
> > > checked basic zone.
> >
> > Actually something is very wrong, the SG don't seem to do anything, I
> > have 2 setups with SG and 4.3 RC8 and on both the SG are useless.
> > Not only the ipsets are not updated "live", but all the traffic is
> > accepted by default! Can anyone with Adv SG zone test?
> >
> > I'm on 4.3 rc8 + CentOS 6.5 HV. I will do more testing tomorrow.
> >
> [Animesh] Did you see this with prior RC too?
[Animesh] Nux, security group support for advanced zone is limited and that too 
was developed in 4.2. I don’t think any changes have been made to that support 
since then. Can you call out what specific issue are you seeing? Most likely it 
is pre-existing issue or not supported. 

The functional spec from 4.2 is at [1] and I don’t know if all that is called 
out is implemented or not, adding Anthony and Chiradeep to the thread for 
further comments

[1] 
https://cwiki.apache.org/confluence/display/CLOUDSTACK/Isolation+based+on+Security+Groups+in+Advance+zone



> > --
> > Sent from the Delta quadrant using Borg technology!
> >
> > Nux!
> > www.nux.ro

Reply via email to