As described in document [1], the service_provider should be set to 'FIREWALL_V2:fwaas_db:neutron_fwaas.services.firewall.service_drivers. agents.agents.FirewallAgentDriver:default' for FWaaS v2. [1] https://docs.openstack.org/neutron/stein/admin/fwaas-v2-scenario.html#enable-fwaas-v2 Change-Id: Iad3e906af325ba3209a77a91ab2061e515b4a219 Signed-off-by: ZijianGuo <guozijn@gmail.com>
23 lines
695 B
Django/Jinja
23 lines
695 B
Django/Jinja
{% if enable_neutron_fwaas | bool %}
|
|
[fwaas]
|
|
enabled = True
|
|
{% if neutron_plugin_agent == 'vmware_nsxv' %}
|
|
driver = vmware_nsxv_edge
|
|
{% else %}
|
|
{% if neutron_fwaas_version == 'v1' %}
|
|
agent_version = v1
|
|
driver = iptables
|
|
{% elif neutron_fwaas_version == 'v2' %}
|
|
agent_version = v2
|
|
driver = iptables_v2
|
|
{% endif %}
|
|
|
|
[service_providers]
|
|
{% if neutron_fwaas_version == 'v1' %}
|
|
service_provider = FIREWALL:Iptables:neutron.agent.linux.iptables_firewall.OVSHybridIptablesFirewallDriver:default
|
|
{% elif neutron_fwaas_version == 'v2' %}
|
|
service_provider = FIREWALL_V2:fwaas_db:neutron_fwaas.services.firewall.service_drivers.agents.agents.FirewallAgentDriver:default
|
|
{% endif %}
|
|
{% endif %}
|
|
{% endif %}
|