> -----Original Message----- > From: Animesh Chaturvedi [mailto:animesh.chaturv...@citrix.com] > Sent: Thursday, March 13, 2014 1:25 PM > To: dev@cloudstack.apache.org > Subject: RE: [VOTE] Apache CloudStack 4.3.0 (eighth round) > > > > > -----Original Message----- > > From: Nux! [mailto:n...@li.nux.ro] > > Sent: Thursday, March 13, 2014 12:41 PM > > To: dev@cloudstack.apache.org > > Subject: Re: [VOTE] Apache CloudStack 4.3.0 (eighth round) > > > > On 13.03.2014 18:58, Nux! wrote: > > > On 13.03.2014 00:26, Animesh Chaturvedi wrote: > > >> Hi All, > > >> > > >> > > >> I've created a 4.3.0 release, with the following artifacts up for a > > >> vote: > > > > > > -1 > > > > > > In Adv SG zone assigning secondary IPs to a NIC doesn't update the > > > ipset accordingly on the agent/hv; it requires stopping/starting the > > > VM. > > > It's not a tragedy, but this was not the case in 4.2.1. Haven't > > > checked basic zone. > > > > Actually something is very wrong, the SG don't seem to do anything, I > > have 2 setups with SG and 4.3 RC8 and on both the SG are useless. > > Not only the ipsets are not updated "live", but all the traffic is > > accepted by default! Can anyone with Adv SG zone test? > > > > I'm on 4.3 rc8 + CentOS 6.5 HV. I will do more testing tomorrow. > > > [Animesh] Did you see this with prior RC too? [Animesh] Nux, security group support for advanced zone is limited and that too was developed in 4.2. I don’t think any changes have been made to that support since then. Can you call out what specific issue are you seeing? Most likely it is pre-existing issue or not supported.
The functional spec from 4.2 is at [1] and I don’t know if all that is called out is implemented or not, adding Anthony and Chiradeep to the thread for further comments [1] https://cwiki.apache.org/confluence/display/CLOUDSTACK/Isolation+based+on+Security+Groups+in+Advance+zone > > -- > > Sent from the Delta quadrant using Borg technology! > > > > Nux! > > www.nux.ro