Switch to supported firewall v2 driver
Firewall v1 driver was deprecated long ago and is now removed in [1], let's switch to firewall v2 driver. [1] https://review.openstack.org/#/c/616410/ Change-Id: Ic995a392075133dd1fba9e417e07149dc1cb4863
This commit is contained in:
parent
5847b42828
commit
feb1f62540
@ -757,9 +757,9 @@ def create_manifests(config, messages):
|
||||
service_plugins.append('metering')
|
||||
|
||||
if config['CONFIG_NEUTRON_FWAAS'] == 'y':
|
||||
service_plugins.append('firewall')
|
||||
fwaas_sp = ('FIREWALL:Iptables:neutron.agent.linux.iptables_firewall.'
|
||||
'OVSHybridIptablesFirewallDriver:default')
|
||||
service_plugins.append('firewall_v2')
|
||||
fwaas_sp = ('FIREWALL_V2:fwaas_db:neutron_fwaas.services.firewall.'
|
||||
'service_drivers.agents.agents.FirewallAgentDriver:default')
|
||||
service_providers.append(fwaas_sp)
|
||||
|
||||
if config['CONFIG_NEUTRON_VPNAAS'] == 'y':
|
||||
|
@ -2,7 +2,7 @@ class packstack::neutron::fwaas ()
|
||||
{
|
||||
class { '::neutron::services::fwaas':
|
||||
enabled => true,
|
||||
agent_version => 'v1',
|
||||
driver => 'neutron_fwaas.services.firewall.drivers.linux.iptables_fwaas.IptablesFwaasDriver',
|
||||
agent_version => 'v2',
|
||||
driver => 'neutron_fwaas.services.firewall.service_drivers.agents.drivers.linux.iptables_fwaas_v2.IptablesFwaasDriver',
|
||||
}
|
||||
}
|
||||
|
@ -7,7 +7,7 @@ class packstack::neutron::l3 ()
|
||||
|
||||
$neutron_fwaas_enabled = str2bool(hiera('CONFIG_NEUTRON_FWAAS'))
|
||||
if $neutron_fwaas_enabled {
|
||||
$extensions = 'fwaas'
|
||||
$extensions = 'fwaas_v2'
|
||||
} else {
|
||||
$extensions = undef
|
||||
}
|
||||
|
Loading…
x
Reference in New Issue
Block a user