[Bug 1022612] Re: private instance IPs can only reach public IPs in other regions, not the same region

Tom Haddon tom.haddon at canonical.com
Wed May 29 12:44:45 UTC 2013


>From http://docs.openstack.org/folsom/openstack-compute/admin/content
/associating-public-ip.html:

"""
Traffic between VMs using floating IPs:

Note that due to the way floating IPs are implemented using a source NAT (SNAT rule in iptables), inconsistent behaviour of security groups can be seen if VMs use their floating IP to communicate with other virtual machines - particularly on the same physical host. Traffic from VM to VM accross the fixed network does not have this issue, and this is the recommended path. To ensure traffic doesn't get SNATed to the floating range, explicitly set dmz_cidr=x.x.x.x/y. x.x.x.x/y is the range of floating ips for each pool of floating ips you define. This configuration is also necessary to make source_groups work if the vms in the source group have floating ips.
"""

This might help...

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to nova in Ubuntu.
https://bugs.launchpad.net/bugs/1022612

Title:
  private instance IPs can only reach public IPs in other regions, not
  the same region

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/nova/+bug/1022612/+subscriptions



More information about the Ubuntu-server-bugs mailing list