Atom feed of this document
  
Draft -  Draft -  Draft -  Draft -  Draft -  Draft -  Draft -  Draft - 
 Enable security group API

The ML2 plug-in can concurrently support different L2 agents (or other mechanisms) with different configuration files, so each L2 agent configuration file (such as ovs_neutron_plugin.ini or linuxbridge_conf.ini) should contain the appropriate firewall_driver value for that agent in addition to setting enable_security_group to True (which is the default).

The firewall_driver value in the API server's ml2_conf.ini file does not matter.

To disable the securitygroup API, edit the ml2_conf.ini file on the API server, and ovs_neutron_plugin.ini, linuxbridge_conf.ini or other L2 agent configuration files on the agent servers :

[securitygroup]
enable_security_group = False
firewall_driver = neutron.agent.firewall.NoopFirewallDriver
Questions? Discuss on ask.openstack.org
Found an error? Report a bug against this page

loading table of contents...