NSX-V3 fix FW rules for VPNaaS
The edge firewall rules for VPNaaS traffic where created in the opposite direction Change-Id: Ifdd51c64264e2a01ae6afb68ee7fe4cac5da430e
This commit is contained in:
parent
fc59514f30
commit
9d99e2ffb6
@ -104,9 +104,9 @@ class NSXv3IPsecVpnDriver(service_drivers.VpnDriver):
|
|||||||
fw_rules.append({
|
fw_rules.append({
|
||||||
'display_name': 'VPN connection ' + conn['id'],
|
'display_name': 'VPN connection ' + conn['id'],
|
||||||
'action': consts.FW_ACTION_ALLOW,
|
'action': consts.FW_ACTION_ALLOW,
|
||||||
'sources': self._translate_addresses_to_target(
|
|
||||||
peer_cidrs),
|
|
||||||
'destinations': self._translate_addresses_to_target(
|
'destinations': self._translate_addresses_to_target(
|
||||||
|
peer_cidrs),
|
||||||
|
'sources': self._translate_addresses_to_target(
|
||||||
local_cidrs)})
|
local_cidrs)})
|
||||||
|
|
||||||
return fw_rules
|
return fw_rules
|
||||||
|
Loading…
x
Reference in New Issue
Block a user