Fix network rules issue if default egress policy is Allow (#3905)

This commit is contained in:
Rakesh 2020-02-23 22:12:06 +01:00 committed by GitHub
parent ac7bcde45b
commit e269b14095
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -1812,11 +1812,9 @@ Configurable, StateListener<VirtualMachine.State, VirtualMachine.Event, VirtualM
// Fetch firewall Egress rules.
if (_networkModel.isProviderSupportServiceInNetwork(guestNetworkId, Service.Firewall, provider)) {
firewallRulesEgress.addAll(_rulesDao.listByNetworkPurposeTrafficType(guestNetworkId, Purpose.Firewall, FirewallRule.TrafficType.Egress));
if (firewallRulesEgress.isEmpty()) {
//create egress default rule for VR
createDefaultEgressFirewallRule(firewallRulesEgress, guestNetworkId);
}
}
// Re-apply firewall Egress rules
s_logger.debug("Found " + firewallRulesEgress.size() + " firewall Egress rule(s) to apply as a part of domR " + router + " start.");