← Back to team overview

yahoo-eng-team team mailing list archive

[Bug 1662571] [NEW] Intersecting port ranges in security-group-rules

 

Public bug reported:

Seen on: newton devstack

Currently it is possible to create security-group-rules with
intersecting port ranges (like [769, 781] and [770, 777]
http://paste.openstack.org/show/597980/). This works for any type of
firewall_driver, both iptables and ovsfw.

I believe this can be optimized a bit.

** Affects: neutron
     Importance: Undecided
         Status: New

-- 
You received this bug notification because you are a member of Yahoo!
Engineering Team, which is subscribed to neutron.
https://bugs.launchpad.net/bugs/1662571

Title:
  Intersecting port ranges in security-group-rules

Status in neutron:
  New

Bug description:
  Seen on: newton devstack

  Currently it is possible to create security-group-rules with
  intersecting port ranges (like [769, 781] and [770, 777]
  http://paste.openstack.org/show/597980/). This works for any type of
  firewall_driver, both iptables and ovsfw.

  I believe this can be optimized a bit.

To manage notifications about this bug go to:
https://bugs.launchpad.net/neutron/+bug/1662571/+subscriptions


Follow ups