# Generated by iptables-save v1.4.7 on Wed Mar 26 09:54:12 2014
*mangle
:PREROUTING ACCEPT [12354:14092770]
:INPUT ACCEPT [12060:14061656]
:FORWARD ACCEPT [0:0]
:OUTPUT ACCEPT [11916:5207881]
:POSTROUTING ACCEPT [11916:5207881]
:nova-api-POSTROUTING - [0:0]
-A POSTROUTING -j nova-api-POSTROUTING 
COMMIT
# Completed on Wed Mar 26 09:54:12 2014
# Generated by iptables-save v1.4.7 on Wed Mar 26 09:54:12 2014
*nat
:PREROUTING ACCEPT [305:32041]
:POSTROUTING ACCEPT [1185:90328]
:OUTPUT ACCEPT [1185:90328]
:nova-api-OUTPUT - [0:0]
:nova-api-POSTROUTING - [0:0]
:nova-api-PREROUTING - [0:0]
:nova-api-float-snat - [0:0]
:nova-api-snat - [0:0]
:nova-postrouting-bottom - [0:0]
-A PREROUTING -j nova-api-PREROUTING 
-A POSTROUTING -j nova-api-POSTROUTING 
-A POSTROUTING -j nova-postrouting-bottom 
-A OUTPUT -j nova-api-OUTPUT 
-A nova-api-snat -j nova-api-float-snat 
-A nova-postrouting-bottom -j nova-api-snat 
COMMIT
# Completed on Wed Mar 26 09:54:12 2014
# Generated by iptables-save v1.4.7 on Wed Mar 26 09:54:12 2014
*filter
:INPUT ACCEPT [0:0]
:FORWARD ACCEPT [0:0]
:OUTPUT ACCEPT [0:0]
:nova-api-FORWARD - [0:0]
:nova-api-INPUT - [0:0]
:nova-api-OUTPUT - [0:0]
:nova-api-local - [0:0]
:nova-filter-top - [0:0]
-A INPUT -j nova-api-INPUT 
-A INPUT -s 10.16.139.91/32 -p tcp -m multiport --dports 3260,8776 -m comment --comment "001 cinder incoming 10.16.139.91" -j ACCEPT 
-A INPUT -s 10.16.139.92/32 -p tcp -m multiport --dports 3260,8776 -m comment --comment "001 cinder incoming 10.16.139.92" -j ACCEPT 
-A INPUT -s 10.16.139.91/32 -p tcp -m multiport --dports 9292 -m comment --comment "001 glance incoming 10.16.139.91" -j ACCEPT 
-A INPUT -p tcp -m multiport --dports 80 -m comment --comment "001 horizon 80  incoming" -j ACCEPT 
-A INPUT -s 10.16.139.92/32 -p tcp -m multiport --dports 9292 -m comment --comment "001 glance incoming 10.16.139.92" -j ACCEPT 
-A INPUT -p tcp -m multiport --dports 5000,35357 -m comment --comment "001 keystone incoming ALL" -j ACCEPT 
-A INPUT -s 10.16.139.90/32 -p tcp -m multiport --dports 3306 -m comment --comment "001 mysql incoming 10.16.139.90" -j ACCEPT 
-A INPUT -s 10.16.139.91/32 -p tcp -m multiport --dports 3306 -m comment --comment "001 mysql incoming 10.16.139.91" -j ACCEPT 
-A INPUT -s 10.16.139.90/32 -p tcp -m multiport --dports 9696 -m comment --comment "001 neutron incoming 10.16.139.90" -j ACCEPT 
-A INPUT -s 10.16.139.91/32 -p tcp -m multiport --dports 9696 -m comment --comment "001 neutron incoming 10.16.139.91" -j ACCEPT 
-A INPUT -s 10.16.139.92/32 -p tcp -m multiport --dports 9696 -m comment --comment "001 neutron incoming 10.16.139.92" -j ACCEPT 
-A INPUT -s 10.16.139.92/32 -p tcp -m multiport --dports 3306 -m comment --comment "001 mysql incoming 10.16.139.92" -j ACCEPT 
-A INPUT -p tcp -m multiport --dports 6080 -m comment --comment "001 novncproxy incoming" -j ACCEPT 
-A INPUT -p tcp -m multiport --dports 8773,8774,8775 -m comment --comment "001 novaapi incoming" -j ACCEPT 
-A INPUT -s 10.16.139.90/32 -p tcp -m multiport --dports 5671,5672 -m comment --comment "001 qpid incoming 10.16.139.90" -j ACCEPT 
-A INPUT -s 10.16.139.91/32 -p tcp -m multiport --dports 5671,5672 -m comment --comment "001 qpid incoming 10.16.139.91" -j ACCEPT 
-A INPUT -s 10.16.139.92/32 -p tcp -m multiport --dports 5671,5672 -m comment --comment "001 qpid incoming 10.16.139.92" -j ACCEPT 
-A FORWARD -j nova-filter-top 
-A FORWARD -j nova-api-FORWARD 
-A OUTPUT -j nova-filter-top 
-A OUTPUT -j nova-api-OUTPUT 
-A nova-api-INPUT -d 10.16.139.90/32 -p tcp -m tcp --dport 8775 -j ACCEPT 
-A nova-filter-top -j nova-api-local 
COMMIT
# Completed on Wed Mar 26 09:54:12 2014
