Ask Your Question
1

FWaaS drivers for OpenStack

asked 2014-11-20 04:16:31 -0600

akshik gravatar image

as of now i could see only vArmour-Firewall and the basic linux.iptables, i could not fine any support drivers for Cisco, Frotigate and other providers.

are there any roadmap for that, what can we expect in near future, or are there any other option to connect to the firewall thru other mechanism

edit retag flag offensive close merge delete

1 answer

Sort by ยป oldest newest most voted
0

answered 2015-05-10 16:29:41 -0600

Hi Akshik,

I have the same question. Also an additional question I have is: is the Firewall capability limited by the FWaaS API definition? So far I see the following "neutron firewall-rule-create" command, which only allows simple 5-tuple filtering kind of firewall capability. I wonder if vArmour-Firewall can provide more capabilities (e.g. stateful firewall filtering, URL/content filtering, IDS/IPS, anti-malware, etc.) within the framework of OpenStack FWaaS?

Thanks, Ian

neutron firewall-rule-create --protocol tcp --destination-port 80 --action allow Created a new firewall_rule: +------------------------+--------------------------------------+ | Field | Value | +------------------------+--------------------------------------+ | action | allow | | description | | | destination_ip_address | | | destination_port | 80 | | enabled | True | | firewall_policy_id | | | id | 1283a548-9ca8-4a7b-a187-fc21c7fefe8e | | ip_version | 4 | | name | | | position | | | protocol | tcp | | shared | False | | source_ip_address | | | source_port | | | tenant_id | baaaf4da44874e3f82ff93beba64117e | +------------------------+--------------------------------------+

edit flag offensive delete link more

Your Answer

Please start posting anonymously - your entry will be published after you log in or create a new account.

Add Answer

Get to know Ask OpenStack

Resources for moderators

Question Tools

1 follower

Stats

Asked: 2014-11-20 04:16:31 -0600

Seen: 103 times

Last updated: Nov 20 '14