DUE TO SPAM, SIGN-UP IS DISABLED. Goto Selfserve wiki signup and request an account.

DUE TO SPAM, SIGN-UP IS DISABLED. Goto Selfserve wiki signup and request an account.
Currently only ACL allow rules are supported as part of Network ACLs. Default is to block all incoming and all outgoing traffic between tiers and between tiers and various gateways (including Public). ACL deny rules will be supported through this feature. New fields "number" and "action"will be added to rules to resolve conflicting rules. After rule creation, its number can be modified. NetworkACLs will be evaluated in the order of its number starting from lowest. Action of the first matching rule is applied.
NetworkACLContainer will be introduced to manage NetworkACLs.
NetworkACLContainer is a set of NetworkACLs that can be assigned to any vpc tier. Instead of adding NetworkACLs directly to the tier, NetworkACLs will be added to the NetworkACLContainer. NetworkACLContainer can be assigned to multiple vpc tiers. Each tier can be associated with only one NetworkACLContainer.
Default NetworkACLContainer
Each tier upon creation will be associated with default NetworkACLContainer.
Add/Remove networkACL to container
NetworkACLs can be added or removed from the container using APIs addNetworkACLtoContainer, removeNetworkACLfromContainer
createNetworkAcl
replaceNetworkACL
createNetworkAclContainer
Parameters:
Response:
addNetworkACLtoContainer
Parameters:
Response
removeNetworkACLfromContainer
Parameters:
Response:
New columns in firewall_rules table:
action and number will be mandatory for rule with purpose NetworkACL.
Upgrade:
All existing rules in firewall_rules table of type NetworkACL will have action "allow". Rule number will be sequentially assigned for all rules in each network.