Is there something this is missing that could be added to cover your use
case? I'd be curious to hear where this doesn't work for your case.  One
would need to implement the port_security extension if they want to
completely allow all ips/macs to pass and they could state which ones are
explicitly allowed with the allowed-address-pair extension (at least that
is my current thought).

Thanks,

Aaron


On Thu, Jul 18, 2013 at 3:32 AM, Ian Wells <[email protected]> wrote:

> > I'd still like the simpler and more general purpose 'disable spoofing'
> > option as well.  That doesn't allow MAC spoofing and it doesn't work
> > for what I'm up to.
>
> Read the document properly, Ian.  I take back the MAC spoofing
> comment, but it still won't work for what I'm up to ;)
>
> _______________________________________________
> OpenStack-dev mailing list
> [email protected]
> http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack-dev
>
_______________________________________________
OpenStack-dev mailing list
[email protected]
http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack-dev

Reply via email to