firewalld is started on overcloud nodes while updating overcloud stack
Issue
- firewalld is enabled and started on overcloud nodes while updating overcloud stack, like scaling up or down.
- After overcloud deploy finishes, firewalld is disabled and iptables comes back active.
- Because iptables should be used instead of firewalld, this causes failure in controller resources, and network connectivity over l3 agents running on controller nodes while firewalld is running instead of iptables
Environment
- Red Hat OpenStack Platform 13
- Red Hat Ceph Storage 3.0
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.