default config results in arbitrary forwarding being allowed
Bug #1931615 reported by
Radosław Piliszek
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
kolla-ansible |
Fix Released
|
High
|
Unassigned | ||
Wallaby |
Fix Committed
|
High
|
Unassigned | ||
Xena |
Fix Released
|
High
|
Unassigned |
Bug Description
Since Wallaby, Kolla Ansible defaults docker config to not manage iptables. However, it does not disable its ip_forward control which makes docker turn the host into any-any forwarder.
To post a comment you must log in.
Fix proposed to branch: master /review. opendev. org/c/openstack /kolla- ansible/ +/795852
Review: https:/