Return-Path: X-Original-To: apmail-cloudstack-users-archive@www.apache.org Delivered-To: apmail-cloudstack-users-archive@www.apache.org Received: from mail.apache.org (hermes.apache.org [140.211.11.3]) by minotaur.apache.org (Postfix) with SMTP id D31C410844 for ; Wed, 3 Jul 2013 12:46:11 +0000 (UTC) Received: (qmail 80913 invoked by uid 500); 3 Jul 2013 12:46:10 -0000 Delivered-To: apmail-cloudstack-users-archive@cloudstack.apache.org Received: (qmail 80623 invoked by uid 500); 3 Jul 2013 12:46:09 -0000 Mailing-List: contact users-help@cloudstack.apache.org; run by ezmlm Precedence: bulk List-Help: List-Unsubscribe: List-Post: List-Id: Reply-To: users@cloudstack.apache.org Delivered-To: mailing list users@cloudstack.apache.org Received: (qmail 80603 invoked by uid 99); 3 Jul 2013 12:46:09 -0000 Received: from nike.apache.org (HELO nike.apache.org) (192.87.106.230) by apache.org (qpsmtpd/0.29) with ESMTP; Wed, 03 Jul 2013 12:46:09 +0000 X-ASF-Spam-Status: No, hits=-2.3 required=5.0 tests=RCVD_IN_DNSWL_MED,SPF_HELO_PASS,SPF_PASS X-Spam-Check-By: apache.org Received-SPF: pass (nike.apache.org: domain of jayapalreddy.uradi@citrix.com designates 203.166.19.134 as permitted sender) Received: from [203.166.19.134] (HELO SMTP.CITRIX.COM.AU) (203.166.19.134) by apache.org (qpsmtpd/0.29) with ESMTP; Wed, 03 Jul 2013 12:46:04 +0000 X-IronPort-AV: E=Sophos;i="4.87,988,1363132800"; d="scan'208";a="3494723" Received: from sinpex01cl03.citrite.net ([10.151.46.34]) by SYDPIPO01.CITRIX.COM.AU with ESMTP/TLS/AES128-SHA; 03 Jul 2013 12:45:41 +0000 Received: from SINPEX01CL01.citrite.net ([169.254.1.101]) by SINPEX01CL03.citrite.net ([169.254.3.246]) with mapi id 14.02.0342.004; Wed, 3 Jul 2013 20:45:40 +0800 From: Jayapal Reddy Uradi To: "" CC: "" Subject: Re: Problematic firewall rules for basic zone with no security groups Thread-Topic: Problematic firewall rules for basic zone with no security groups Thread-Index: Ac4EMiYcCzLUK9pATbyhP9F++bDHWxqKG8eAAlNlTIA= Date: Wed, 3 Jul 2013 12:45:39 +0000 Message-ID: <98589336-755D-40E8-A2A8-E1884A7E745D@citrix.com> References: <1858EF93-245F-46B8-BA0F-D6599268FB15@nickwales.co.uk> In-Reply-To: Accept-Language: en-US Content-Language: en-US X-MS-Has-Attach: X-MS-TNEF-Correlator: x-originating-ip: [10.151.46.1] Content-Type: text/plain; charset="iso-8859-1" Content-ID: <89D0306EE418B64D9373BA2944F0403C@citrix.com> Content-Transfer-Encoding: quoted-printable MIME-Version: 1.0 X-Virus-Checked: Checked by ClamAV on apache.org Hi, Please share host iptables (iptables -L -nv)rules on pastebin.com=20 Thanks, Jayapal On 21-Jun-2013, at 10:07 PM, Nick Wales wrote: > Having recently upgraded my hosts to 4.1 I am encountering this issue > again. >=20 > To confirm, the zone has no security groups however I am unable to get > access to guests until I have flushed iptables. >=20 > I have tried removing ebtables as with 4.0.x but that has not helped. >=20 > Now when I restart iptables on one of my hosts I'm stuck at "iptables: > Unloading modules:" The rest are fine though. >=20 >=20 > On 6 February 2013 00:20, David Nalley wrote: >=20 >> On Tue, Feb 5, 2013 at 6:44 PM, Anthony Xu wrote: >>> Hi Nick, >>>=20 >>> This issue was fixed in 4.1 >>>=20 >>=20 >> Can we get the fix included in the 4.0 branch for release in 4.0.2 in >> the future? >> Having to rip out ebtables is a pretty rough workaround >>=20