Thursday, January 19, 2017

OpenStack - Security Groups

List Secuirty Groups
Syntax: nova secgroup-list
# nova secgroup-list

Creating Security Groups
Syntax: nova secgroup-create <security_group_name> "comments"
# nova secgroup-create webservers "Allows web traffic anywher efrom the internet"

Adding rules to Security Group
Syntax: nova secgroup-add-rule <security_group_id/name> <protocol> <from_port> <to_port> <ip_range>
# nova secgroup-add-rule webservers tcp 80 80 0.0.0.0/0
# nova secgroup-add-rule webservers tcp 443 443 0.0.0.0/0
# nova secgroup-add-rule webservers tcp 22 22 0.0.0.0/0
# nova secgroup-add-rule default icmp -1 -1 0.0.0.0/0

Viewing rules of a Security Group
Syntax: nova secgroup-list-rules <security_group_id/name>
# nova secgroup-list-rules ab211c6d-c9c5-438b-84a6-cf5bee822ef1

Removing Security Group from an instance
Syntax: nova remove-secgroup <instance> <secgroup-name>
# nova remove-secgroup Cirros default

0 comments:

Post a Comment