Monday, 5 February 2024

network IP 0.0.0.0/0, ingress/egress, openstack security group and security group rules

 https://stackoverflow.com/questions/44234374/aws-what-does-0-0-0-0-0-and-0-mean#:~:text=0.0.0.0%2F0%2C%3A%3A%2F,and%20%3A%3A%2F0%20represents%20ipv6.


0.0.0.0/0,::/0 - Means source can be any ip address, means from any system request is accepted, 0.0.0.0/0 represents ipv4 and ::/0 represents ipv6. 


Ingress enables external traffic to reach containers, while egress enables containers to reach external resources. I


openstack get security groups  of a server

https://docs.openstack.org/api-ref/compute/#list-security-groups-by-server

myopenstack.com:8774/v2.1/servers/server_id/os-security-groups



open stack get secruity group rules of a project

https://docs.openstack.org/api-ref/network/v2/#security-group-rules

myopenstack.com:9696/v2.0/security-group-rules



for each security group, cross refernece security group rule id for rule detail, by default,

every security group allows 

  • ALLOW IPv6 to ::/0
  • ALLOW IPv4 to 0.0.0.0/0


for other rules like ingress, if no ip specified, use group name allow IPV4 from default


No comments:

Post a Comment