vmware-nsx/devstack
Adit Sarfaty 60ffb8f705 NSX|V support security groups rules with policy configuration
The nsxv configuration allow_tenant_rules_with_policy (False
by default) allows tenants to create regular security groups with
rules when use_nsx_policies is True.
Those security groups rules will be evaluated after the relevant
policies.

Change-Id: I95a49505e3575938c2ecfe482bde50ba37ca1f8e
2016-11-08 14:46:56 +02:00
..
lib NSX|V support security groups rules with policy configuration 2016-11-08 14:46:56 +02:00
nsx_v3 Add native DHCP config in nsxv3 sample local.conf 2016-09-27 19:00:24 +00:00
tools NSX|V - initial support for NSX policy 2016-11-07 15:27:57 +02:00
localrc_nsx_v3 NSX|V3: Add support for native metadata proxy service 2016-06-23 08:45:47 +00:00
override-defaults Define has_neutron_plugin_security_group using override-defaults 2016-01-13 23:26:21 +09:00
plugin.sh NSX|V3: only run cleanup for devstack if q-svc is enabled 2016-08-16 23:43:32 -07:00
README.rst NSX|V add edge_ha per availability zone 2016-07-20 10:58:49 +03:00
settings Implement devstack external plugin 2015-02-24 08:46:13 -08:00

Devstack external plugin

Add and set the following in your local.conf/localrc file:

enable_plugin vmware-nsx https://git.openstack.org/openstack/vmware-nsx

For Nsx-mh:

Q_PLUGIN=vmware_nsx

PUBLIC_BRIDGE # bridge used for external connectivity, typically br-ex NSX_GATEWAY_NETWORK_INTERFACE # interface used to communicate with the NSX Gateway NSX_GATEWAY_NETWORK_CIDR # CIDR to configure $PUBLIC_BRIDGE, e.g. 172.24.4.211/24

For Nsx-v:

Q_PLUGIN=vmware_nsx_v

NSXV_MANAGER_URI # URL for NSXv manager (e.g - https://management_ip). NSXV_USER # NSXv username. NSXV_PASSWORD # NSXv password. NSXV_CLUSTER_MOID # clusters ids containing OpenStack hosts. NSXV_DATACENTER_MOID # datacenter id for edge deployment. NSXV_RESOURCE_POOL_ID # resource-pool id for edge deployment. NSXV_AVAILABILITY_ZONES # alternative resource-pools/data stores ids/edge_ha for edge deployment NSXV_DATASTORE_ID # datastore id for edge deployment. NSXV_EXTERNAL_NETWORK # id of logic switch for physical network connectivity. NSXV_VDN_SCOPE_ID # network scope id for VXLAN virtual-wires. NSXV_DVS_ID # Dvs id for VLAN based networks. NSXV_BACKUP_POOL # backup edge pools management range, # <edge_type>:[edge_size]:<minimum_pooled_edges>:<maximum_pooled_edges>. # edge_type:'service'(service edge) or 'vdr'(distributed edge). # edge_size: 'compact', 'large'(by default), 'xlarge' or 'quadlarge'.

# To enable the metadata service, the following variables should be also set: NSXV_MGT_NET_PROXY_IPS # management network IP address for metadata proxy. NSXV_MGT_NET_PROXY_NETMASK # management network netmask for metadata proxy. NSXV_NOVA_METADATA_IPS # IP addresses used by Nova metadata service. NSXV_NOVA_METADATA_PORT # TCP Port used by Nova metadata server. NSXV_MGT_NET_MOID # Network ID for management network connectivity