Este contenido no está disponible en el idioma seleccionado.
Chapter 60. security
This chapter describes the commands under the security command.
60.1. security group create Copiar enlaceEnlace copiado en el portapapeles!
Usage:
Create a new security group
| Value | Summary |
|---|---|
| <name> | New security group name |
| Value | Summary |
|---|---|
| -h, --help | Show this help message and exit |
| --description <description> | Security group description |
| --project <project> | Owner’s project (name or id) |
| --project-domain <project-domain> | Domain the project belongs to (name or ID). This can be used in case collisions between project names exist. |
| --tag <tag> | Tag to be added to the security group (repeat option to set multiple tags) |
| --no-tag | No tags associated with the security group |
| Value | Summary |
|---|---|
| -f {json,shell,table,value,yaml}, --format {json,shell,table,value,yaml} | the output format, defaults to table |
| -c COLUMN, --column COLUMN | specify the column(s) to include, can be repeated |
| Value | Summary |
|---|---|
| --max-width <integer> | Maximum display width, <1 to disable. You can also use the CLIFF_MAX_TERM_WIDTH environment variable, but the parameter takes precedence. |
| --fit-width | Fit the table to the display width. implied if --max- width greater than 0. Set the environment variable CLIFF_FIT_WIDTH=1 to always enable |
| --print-empty | Print empty table if there is no data to show. |
| Value | Summary |
|---|---|
| --noindent | Whether to disable indenting the json |
| Value | Summary |
|---|---|
| --prefix PREFIX | Add a prefix to all variable names |
60.2. security group delete Copiar enlaceEnlace copiado en el portapapeles!
Usage:
openstack security group delete [-h] <group> [<group> ...]
openstack security group delete [-h] <group> [<group> ...]
Delete security group(s)
| Value | Summary |
|---|---|
| <group> | Security group(s) to delete (name or id) |
| Value | Summary |
|---|---|
| -h, --help | Show this help message and exit |
60.3. security group list Copiar enlaceEnlace copiado en el portapapeles!
Usage:
List security groups
| Value | Summary |
|---|---|
| -h, --help | Show this help message and exit |
| --project <project> | List security groups according to the project (name or ID) |
| --project-domain <project-domain> | Domain the project belongs to (name or ID). This can be used in case collisions between project names exist. |
| --tags <tag>[,<tag>,…] | List security group which have all given tag(s) (Comma-separated list of tags) |
| --any-tags <tag>[,<tag>,…] | List security group which have any given tag(s) (Comma-separated list of tags) |
| --not-tags <tag>[,<tag>,…] | Exclude security group which have all given tag(s) (Comma-separated list of tags) |
| --not-any-tags <tag>[,<tag>,…] | Exclude security group which have any given tag(s) (Comma-separated list of tags) |
| Value | Summary |
|---|---|
| -f {csv,json,table,value,yaml}, --format {csv,json,table,value,yaml} | the output format, defaults to table |
| -c COLUMN, --column COLUMN | specify the column(s) to include, can be repeated |
| --sort-column SORT_COLUMN | specify the column(s) to sort the data (columns specified first have a priority, non-existing columns are ignored), can be repeated |
| Value | Summary |
|---|---|
| --max-width <integer> | Maximum display width, <1 to disable. You can also use the CLIFF_MAX_TERM_WIDTH environment variable, but the parameter takes precedence. |
| --fit-width | Fit the table to the display width. implied if --max- width greater than 0. Set the environment variable CLIFF_FIT_WIDTH=1 to always enable |
| --print-empty | Print empty table if there is no data to show. |
| Value | Summary |
|---|---|
| --noindent | Whether to disable indenting the json |
| Value | Summary |
|---|---|
| --quote {all,minimal,none,nonnumeric} | when to include quotes, defaults to nonnumeric |
60.4. security group rule create Copiar enlaceEnlace copiado en el portapapeles!
Usage:
Create a new security group rule
| Value | Summary |
|---|---|
| <group> | Create rule in this security group (name or id) |
| Value | Summary |
|---|---|
| -h, --help | Show this help message and exit |
| --remote-ip <ip-address> | Remote IP address block (may use CIDR notation; default for IPv4 rule: 0.0.0.0/0) |
| --remote-group <group> | Remote security group (name or ID) |
| --description <description> | Set security group rule description |
| --dst-port <port-range> | Destination port, may be a single port or a starting and ending port range: 137:139. Required for IP protocols TCP and UDP. Ignored for ICMP IP protocols. |
| --icmp-type <icmp-type> | ICMP type for ICMP IP protocols |
| --icmp-code <icmp-code> | ICMP code for ICMP IP protocols |
| --protocol <protocol> | IP protocol (ah, dccp, egp, esp, gre, icmp, igmp, ipv6-encap, ipv6-frag, ipv6-icmp, ipv6-nonxt, ipv6-opts, ipv6-route, ospf, pgm, rsvp, sctp, tcp, udp, udplite, vrrp and integer representations [0-255] or any; default: tcp) |
| --ingress | Rule applies to incoming network traffic (default) |
| --egress | Rule applies to outgoing network traffic |
| --ethertype <ethertype> | Ethertype of network traffic (IPv4, IPv6; default: based on IP protocol) |
| --project <project> | Owner’s project (name or id) |
| --project-domain <project-domain> | Domain the project belongs to (name or ID). This can be used in case collisions between project names exist. |
| Value | Summary |
|---|---|
| -f {json,shell,table,value,yaml}, --format {json,shell,table,value,yaml} | the output format, defaults to table |
| -c COLUMN, --column COLUMN | specify the column(s) to include, can be repeated |
| Value | Summary |
|---|---|
| --max-width <integer> | Maximum display width, <1 to disable. You can also use the CLIFF_MAX_TERM_WIDTH environment variable, but the parameter takes precedence. |
| --fit-width | Fit the table to the display width. implied if --max- width greater than 0. Set the environment variable CLIFF_FIT_WIDTH=1 to always enable |
| --print-empty | Print empty table if there is no data to show. |
| Value | Summary |
|---|---|
| --noindent | Whether to disable indenting the json |
| Value | Summary |
|---|---|
| --prefix PREFIX | Add a prefix to all variable names |
60.5. security group rule delete Copiar enlaceEnlace copiado en el portapapeles!
Usage:
openstack security group rule delete [-h] <rule> [<rule> ...]
openstack security group rule delete [-h] <rule> [<rule> ...]
Delete security group rule(s)
| Value | Summary |
|---|---|
| <rule> | Security group rule(s) to delete (id only) |
| Value | Summary |
|---|---|
| -h, --help | Show this help message and exit |
60.6. security group rule list Copiar enlaceEnlace copiado en el portapapeles!
Usage:
List security group rules
| Value | Summary |
|---|---|
| <group> | List all rules in this security group (name or id) |
| Value | Summary |
|---|---|
| -h, --help | Show this help message and exit |
| --protocol <protocol> | List rules by the IP protocol (ah, dhcp, egp, esp, gre, icmp, igmp, ipv6-encap, ipv6-frag, ipv6-icmp, ipv6-nonxt, ipv6-opts, ipv6-route, ospf, pgm, rsvp, sctp, tcp, udp, udplite, vrrp and integer representations [0-255]). |
| --ingress | List rules applied to incoming network traffic |
| --egress | List rules applied to outgoing network traffic |
| --long | List additional fields in output |
| Value | Summary |
|---|---|
| -f {csv,json,table,value,yaml}, --format {csv,json,table,value,yaml} | the output format, defaults to table |
| -c COLUMN, --column COLUMN | specify the column(s) to include, can be repeated |
| --sort-column SORT_COLUMN | specify the column(s) to sort the data (columns specified first have a priority, non-existing columns are ignored), can be repeated |
| Value | Summary |
|---|---|
| --max-width <integer> | Maximum display width, <1 to disable. You can also use the CLIFF_MAX_TERM_WIDTH environment variable, but the parameter takes precedence. |
| --fit-width | Fit the table to the display width. implied if --max- width greater than 0. Set the environment variable CLIFF_FIT_WIDTH=1 to always enable |
| --print-empty | Print empty table if there is no data to show. |
| Value | Summary |
|---|---|
| --noindent | Whether to disable indenting the json |
| Value | Summary |
|---|---|
| --quote {all,minimal,none,nonnumeric} | when to include quotes, defaults to nonnumeric |
60.7. security group rule show Copiar enlaceEnlace copiado en el portapapeles!
Usage:
Display security group rule details
| Value | Summary |
|---|---|
| <rule> | Security group rule to display (id only) |
| Value | Summary |
|---|---|
| -h, --help | Show this help message and exit |
| Value | Summary |
|---|---|
| -f {json,shell,table,value,yaml}, --format {json,shell,table,value,yaml} | the output format, defaults to table |
| -c COLUMN, --column COLUMN | specify the column(s) to include, can be repeated |
| Value | Summary |
|---|---|
| --max-width <integer> | Maximum display width, <1 to disable. You can also use the CLIFF_MAX_TERM_WIDTH environment variable, but the parameter takes precedence. |
| --fit-width | Fit the table to the display width. implied if --max- width greater than 0. Set the environment variable CLIFF_FIT_WIDTH=1 to always enable |
| --print-empty | Print empty table if there is no data to show. |
| Value | Summary |
|---|---|
| --noindent | Whether to disable indenting the json |
| Value | Summary |
|---|---|
| --prefix PREFIX | Add a prefix to all variable names |
60.8. security group set Copiar enlaceEnlace copiado en el portapapeles!
Usage:
openstack security group set [-h] [--name <new-name>]
[--description <description>]
[--tag <tag>] [--no-tag]
<group>
openstack security group set [-h] [--name <new-name>]
[--description <description>]
[--tag <tag>] [--no-tag]
<group>
Set security group properties
| Value | Summary |
|---|---|
| <group> | Security group to modify (name or id) |
| Value | Summary |
|---|---|
| -h, --help | Show this help message and exit |
| --name <new-name> | New security group name |
| --description <description> | New security group description |
| --tag <tag> | Tag to be added to the security group (repeat option to set multiple tags) |
| --no-tag | Clear tags associated with the security group. specify both --tag and --no-tag to overwrite current tags |
60.9. security group show Copiar enlaceEnlace copiado en el portapapeles!
Usage:
Display security group details
| Value | Summary |
|---|---|
| <group> | Security group to display (name or id) |
| Value | Summary |
|---|---|
| -h, --help | Show this help message and exit |
| Value | Summary |
|---|---|
| -f {json,shell,table,value,yaml}, --format {json,shell,table,value,yaml} | the output format, defaults to table |
| -c COLUMN, --column COLUMN | specify the column(s) to include, can be repeated |
| Value | Summary |
|---|---|
| --max-width <integer> | Maximum display width, <1 to disable. You can also use the CLIFF_MAX_TERM_WIDTH environment variable, but the parameter takes precedence. |
| --fit-width | Fit the table to the display width. implied if --max- width greater than 0. Set the environment variable CLIFF_FIT_WIDTH=1 to always enable |
| --print-empty | Print empty table if there is no data to show. |
| Value | Summary |
|---|---|
| --noindent | Whether to disable indenting the json |
| Value | Summary |
|---|---|
| --prefix PREFIX | Add a prefix to all variable names |
60.10. security group unset Copiar enlaceEnlace copiado en el portapapeles!
Usage:
openstack security group unset [-h] [--tag <tag> | --all-tag] <group>
openstack security group unset [-h] [--tag <tag> | --all-tag] <group>
Unset security group properties
| Value | Summary |
|---|---|
| <group> | Security group to modify (name or id) |
| Value | Summary |
|---|---|
| -h, --help | Show this help message and exit |
| --tag <tag> | Tag to be removed from the security group (repeat option to remove multiple tags) |
| --all-tag | Clear all tags associated with the security group |