Rohit Yadav created CLOUDSTACK-8395:
---------------------------------------

             Summary: Basic Zone Security Group rules fail with XenServer 6.5
                 Key: CLOUDSTACK-8395
                 URL: https://issues.apache.org/jira/browse/CLOUDSTACK-8395
             Project: CloudStack
          Issue Type: Bug
      Security Level: Public (Anyone can view this level - this is the default.)
    Affects Versions: 4.5.0, 4.6.0
            Reporter: Rohit Yadav
            Assignee: Rohit Yadav
            Priority: Blocker
             Fix For: 4.6.0, 4.5.1


With latest ACS 4.5 branch, SG rules on XenServer 6.5 were found to be flaky. 
They worked sometimes and sometimes failed. On inspection of cloud.log and 
SMLog, the following errors were found:

DEBUG [root] Ignoring failure to delete rules for vm s-2-VM 
...
DEBUG [root] Ignoring failure to delete ebtables chain for vm s-2-VM            
                                  
...
DEBUG [root] Ignoring failure to delete arptables chain for vm s-2-VM
...
DEBUG [root] Ignoring failure to delete ingress chain s-2-VM
DEBUG [root] Ignoring failure to delete egress chain s-2-VM-eg
...

The possible issue discovered was how the python based vmops plugin execute 
iptables rules. The sm/util.py shipped with XS 6.5 is possibly different than 
that on XS 6.2.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Reply via email to