Re: [Openstack] How to troubleshoot Security Group rules

2017-01-21 Thread Vimal Kumar
I am facing a mysterious situation. I am using LinuxBridge (ML2) on OpenStack Newton all-in-one. I set up tcpdump on the tap device used by the instance and then attach a floating ip from web UI. I see traffic flowing for a few seconds after which there is no further traffic in/out of this tap devi

Re: [Openstack] How to troubleshoot Security Group rules

2017-01-20 Thread Vikash Kumar
Checkout on the bridge connected to tap ports. On Thu, Jan 19, 2017 at 7:02 PM, Vimal Kumar wrote: > Hi, > > Is the rules implemented in the iptables of the node (I am running > all-in-one, LinuxBridge setup), or is it implemented in the iptables of a > separate network namespace? > > On Thu, Ja

Re: [Openstack] How to troubleshoot Security Group rules

2017-01-19 Thread Vimal Kumar
Hi, Is the rules implemented in the iptables of the node (I am running all-in-one, LinuxBridge setup), or is it implemented in the iptables of a separate network namespace? On Thu, Jan 19, 2017 at 1:27 PM, Melvin Hillsman wrote: > If you are running an all-in-one/single node deployment, your se

[Openstack] How to troubleshoot Security Group rules

2017-01-18 Thread Vimal Kumar
Hi! How can I troubleshoot issues related to security groups? It is probably getting implemented via iptables but where? In the host iptables, or inside network namespace, or inside instance itself? I am running a single-node Newton. I am looking for a way to check whether the rules in my securit