Chapter 1. Firewall Rules for Red Hat OpenStack Platform


This article provides a link to the Red Hat OpenStack network flow matrix. The matrix describes network flows created by the director on Red Hat OpenStack Platform. These ports are required for services running on the overcloud. Use this information to determine firewall rules.

1.1. Red Hat OpenStack Network Flow Matrix

The network flow matrix is a comma separated values (CSV) file that describes flows to and from OpenStack services.

NOTE: The network flow matrix describes common traffic flows. It does not describe every possible flow. Some flows that are not described in this matrix might be critical to operation. For instance, if you block all traffic and then selectively open only the flows described here, you might unintentionally block a necessary flow. That could cause issues that are difficult to troubleshoot.

The matrix describes flows in the following columns.

Service
The OpenStack service.
Protocol
Transmission protocol.
Dest. Port
Destination port.
Source Object
Source of data.
Dest. Object
Destination of data.
Source/Dest Pairs
Valid source and destination pairs.
Dest. Network
Destination network.
ServiceNetMap Parent
Determines the network type used for each service.
Traffic Description
Notes about the traffic flow.

Download the network flow matrix file from the following location:

Red Hat OpenStack Network Flows.

Red Hat logoGithubRedditYoutubeTwitter

Learn

Try, buy, & sell

Communities

About Red Hat Documentation

We help Red Hat users innovate and achieve their goals with our products and services with content they can trust.

Making open source more inclusive

Red Hat is committed to replacing problematic language in our code, documentation, and web properties. For more details, see the Red Hat Blog.

About Red Hat

We deliver hardened solutions that make it easier for enterprises to work across platforms and environments, from the core datacenter to the network edge.

© 2024 Red Hat, Inc.