From 35efd1ccf89bfb001ac2fe76479e49a71db6f784 Mon Sep 17 00:00:00 2001 From: Bin Hu Date: Wed, 21 Sep 2016 15:43:54 -0700 Subject: Disable security group after VM starts Change-Id: I07ed7673d8c0b00ebe2127baaad1366f9c2f59d9 Signed-off-by: Bin Hu --- docs/configurationguide/featureconfig.rst | 13 ++++++++++++- docs/configurationguide/index.rst | 13 ++++++++++++- docs/installationprocedure/feature.configuration.rst | 13 ++++++++++++- 3 files changed, 36 insertions(+), 3 deletions(-) diff --git a/docs/configurationguide/featureconfig.rst b/docs/configurationguide/featureconfig.rst index 7e9f91a..b688cb4 100644 --- a/docs/configurationguide/featureconfig.rst +++ b/docs/configurationguide/featureconfig.rst @@ -417,7 +417,18 @@ would be as shown as follows: # VM2 would have the following IPv6 address: # 2001:db8:0:2:f816:3eff:fe44:4444/64 -**OPNFV-NATIVE-SETUP-17**: Now we can ``SSH`` to VMs. You can execute the following command. +**OPNFV-NATIVE-SETUP-17**: Now we need to disable ``eth0-VM1``, ``eth0-VM2`` port-security + +.. code-block:: bash + + for port in eth0-VM1 eth0-VM2 + do + neutron port-update --no-security-groups $port + neutron port-update $port --port-security-enabled=False + neutron port-show $port | grep port_security_enabled + done + +**OPNFV-NATIVE-SETUP-18**: Now we can ``SSH`` to VMs. You can execute the following command. .. code-block:: bash diff --git a/docs/configurationguide/index.rst b/docs/configurationguide/index.rst index a53bcd9..2405c54 100644 --- a/docs/configurationguide/index.rst +++ b/docs/configurationguide/index.rst @@ -417,7 +417,18 @@ would be as shown as follows: # VM2 would have the following IPv6 address: # 2001:db8:0:2:f816:3eff:fe44:4444/64 -**OPNFV-NATIVE-SETUP-17**: Now we can ``SSH`` to VMs. You can execute the following command. +**OPNFV-NATIVE-SETUP-17**: Now we need to disable ``eth0-VM1``, ``eth0-VM2`` port-security + +.. code-block:: bash + + for port in eth0-VM1 eth0-VM2 + do + neutron port-update --no-security-groups $port + neutron port-update $port --port-security-enabled=False + neutron port-show $port | grep port_security_enabled + done + +**OPNFV-NATIVE-SETUP-18**: Now we can ``SSH`` to VMs. You can execute the following command. .. code-block:: bash diff --git a/docs/installationprocedure/feature.configuration.rst b/docs/installationprocedure/feature.configuration.rst index a53bcd9..2405c54 100644 --- a/docs/installationprocedure/feature.configuration.rst +++ b/docs/installationprocedure/feature.configuration.rst @@ -417,7 +417,18 @@ would be as shown as follows: # VM2 would have the following IPv6 address: # 2001:db8:0:2:f816:3eff:fe44:4444/64 -**OPNFV-NATIVE-SETUP-17**: Now we can ``SSH`` to VMs. You can execute the following command. +**OPNFV-NATIVE-SETUP-17**: Now we need to disable ``eth0-VM1``, ``eth0-VM2`` port-security + +.. code-block:: bash + + for port in eth0-VM1 eth0-VM2 + do + neutron port-update --no-security-groups $port + neutron port-update $port --port-security-enabled=False + neutron port-show $port | grep port_security_enabled + done + +**OPNFV-NATIVE-SETUP-18**: Now we can ``SSH`` to VMs. You can execute the following command. .. code-block:: bash -- cgit 1.2.3-korg