Uploaded image for project: 'CloudStack'
  1. CloudStack
  2. CLOUDSTACK-324

Cannot edit default security group rules, default security group blocks all inbound traffic.

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Resolved
    • Critical
    • Resolution: Fixed
    • pre-4.0.0
    • 4.2.0
    • None
    • Security Level: Public (Anyone can view this level - this is the default.)

    Description

      When configuring basic networking, by default the network is created with the "DefaultSharedNetworkOffering". This offering does not have a security group. No inbound traffic is allowed to the created VMs. Reading the AdminGuide documentation:

      "Each CloudStack account comes with a default security group that denies all inbound traffic and allows all outbound traffic. The default security group can be modified so that all new VMs inherit some other desired set of rules."

      If a network is created without a security group, it shouldn't have a security group and all inbound/outbound traffic should be allowed - or at the very least the default security group should be able to be configured.

      http://www.cloudstack.com/forum/8-storage-and-networking/7054-vm-instance-cant-be-accessd-using-basic-networking.html?limit=6&start=6#7084

      Attachments

        Activity

          People

            widodh Wido den Hollander
            maxclark Max Clark
            Votes:
            0 Vote for this issue
            Watchers:
            7 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: