Hi Paul, Creating a new security group with ingress/egress rules, and adding new VMs to the security group and now it's OK !
Unfortunate that it seems not possible to move existing VMs in a new security group. thank you ! Thomas 2018-03-20 18:14 GMT+01:00 Paul Angus <paul.an...@shapeblue.com>: > Ok, so have you created a security group and put the guest VM in it, > that’s how we control traffic in basic networking. > > http://docs.cloudstack.apache.org/projects/cloudstack- > administration/en/latest/networking_and_traffic.html#security-groups > > > > Kind regards, > > Paul Angus > > paul.an...@shapeblue.com > www.shapeblue.com > 53 Chandos Place, Covent Garden, London WC2N 4HSUK > @shapeblue > > > > > -----Original Message----- > From: Aican France <aican...@gmail.com> > Sent: 20 March 2018 17:00 > To: users@cloudstack.apache.org > Subject: Re: CS 4.11 : virtual router Issue - VM not reachable? > > Hi Paul, > > I'm using basic network settings, host supports KVM, and yes on the same > LAN than VMs. > > BR, > Thomas > > 2018-03-20 17:56 GMT+01:00 Paul Angus <paul.an...@shapeblue.com>: > > > Hi Aican, > > > > Are you using advanced or basic networking, and what is your 'host' it > > seems to be on the same subnet as your guest VMs. > > > > > > Kind regards, > > > > Paul Angus > > > > paul.an...@shapeblue.com > > www.shapeblue.com > > 53 Chandos Place, Covent Garden, London WC2N 4HSUK @shapeblue > > > > > > > > > > -----Original Message----- > > From: Aican France <aican...@gmail.com> > > Sent: 20 March 2018 16:21 > > To: users@cloudstack.apache.org > > Subject: CS 4.11 : virtual router Issue - VM not reachable? > > > > Hi all, > > > > On my first cloudstack infrastucture I have a strange network behaviour : > > > > I cannot reach created VMs from the networks outside VMs LAN (ping, ssh, > > TSE,...), but I can access through SSH or ping host, virtual router, > SSVM, > > proxy VMs... > > Firewalls disabled. > > tcpdump shows no entry when ping from my laptop to VM, but logs ICMP > > entrys from host to VM. > > ping is ok from host to Vms and VMs to hosts, outside LAN servers VMs can > > ping default gateway : 172.17.83.254 > > > > host IP : 172.17.83.2 > > virtual router guest network IP : 172.17.83.37 VM : 172.17.83.34 > > > > Did I miss something in my virtual router configuration? > > > > In Network -> GuestNetwork->DefaultGuestNetwork-> View IP Addresses : > > indicates "No data to show" > > > > Thank you, > > > > Thomas > > >