Hi,

I’ve a couple of questions regarding the ongoing work on Neutron Group Policy 
proposed in [1].

1. One of the described actions is redirection to a service chain. How do you 
see BPs [2] and [3] addressing service chaining? Will this BP implement its own 
service chaining mechanism enforcing traffic steering or will it make use of, 
and thus depending on, those BPs?

2. In the second use case presented in the BP document, “Tired application with 
service insertion/chaining”, do you consider that the two firewalls entities 
can represent the same firewall instance or two running and independent 
instances? In case it’s a shared instance, how would it support multiple 
chains? This is, HTTP(s) traffic from Inet group would be redirected to the 
firewall and then passes through the ADC; traffic from App group with 
destination DB group would also be redirected to the very same firewall 
instance, although to a different destination group as the chain differs.

Thanks.

Cheers,
Carlos Gonçalves

[1] 
https://blueprints.launchpad.net/neutron/+spec/group-based-policy-abstraction
[2] 
https://blueprints.launchpad.net/neutron/+spec/neutron-services-insertion-chaining-steering
[3] 
https://blueprints.launchpad.net/neutron/+spec/nfv-and-network-service-chain-implementation

_______________________________________________
OpenStack-dev mailing list
OpenStack-dev@lists.openstack.org
http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack-dev

Reply via email to