Fix network rules issue if default egress policy is Allow (#3905)

This commit is contained in:
Rakesh 2020-02-23 22:12:06 +01:00 committed by GitHub
parent ac7bcde45b
commit e269b14095
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -1812,10 +1812,8 @@ Configurable, StateListener<VirtualMachine.State, VirtualMachine.Event, VirtualM
// Fetch firewall Egress rules. // Fetch firewall Egress rules.
if (_networkModel.isProviderSupportServiceInNetwork(guestNetworkId, Service.Firewall, provider)) { if (_networkModel.isProviderSupportServiceInNetwork(guestNetworkId, Service.Firewall, provider)) {
firewallRulesEgress.addAll(_rulesDao.listByNetworkPurposeTrafficType(guestNetworkId, Purpose.Firewall, FirewallRule.TrafficType.Egress)); firewallRulesEgress.addAll(_rulesDao.listByNetworkPurposeTrafficType(guestNetworkId, Purpose.Firewall, FirewallRule.TrafficType.Egress));
if (firewallRulesEgress.isEmpty()) { //create egress default rule for VR
//create egress default rule for VR createDefaultEgressFirewallRule(firewallRulesEgress, guestNetworkId);
createDefaultEgressFirewallRule(firewallRulesEgress, guestNetworkId);
}
} }
// Re-apply firewall Egress rules // Re-apply firewall Egress rules