diff --git a/playbooks/roles/iptables/templates/rules.v4.j2 b/playbooks/roles/iptables/templates/rules.v4.j2 index 0b3c3f268c..9fd3e78d18 100644 --- a/playbooks/roles/iptables/templates/rules.v4.j2 +++ b/playbooks/roles/iptables/templates/rules.v4.j2 @@ -34,5 +34,5 @@ {% endif -%} {% endfor -%} {% endfor -%} --A openstack-INPUT -j REJECT --reject-with icmp-host-prohibited +-A openstack-INPUT -j REJECT --reject-with icmp-admin-prohibited COMMIT diff --git a/testinfra/util.py b/testinfra/util.py index d494d86c4e..127e581dcc 100644 --- a/testinfra/util.py +++ b/testinfra/util.py @@ -100,7 +100,7 @@ def verify_iptables(host): '-A openstack-INPUT -p icmp -m icmp --icmp-type any -j ACCEPT', '-A openstack-INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT', '-A openstack-INPUT -p tcp -m state --state NEW -m tcp --dport 22 -j ACCEPT', - '-A openstack-INPUT -j REJECT --reject-with icmp-host-prohibited' + '-A openstack-INPUT -j REJECT --reject-with icmp-admin-prohibited' ] for rule in needed_rules: assert rule in rules