Skip to content

Instantly share code, notes, and snippets.

@dwatrous
Created May 11, 2016 21:20
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save dwatrous/79680e497fe458e761b5825e1f96d602 to your computer and use it in GitHub Desktop.
Save dwatrous/79680e497fe458e761b5825e1f96d602 to your computer and use it in GitHub Desktop.
stackato_ext_security_group:
type: OS::Neutron::SecurityGroup
properties:
description: Add external security group rules for Stackato
name: stackato-ext
rules:
- remote_ip_prefix: 0.0.0.0/0
protocol: tcp
port_range_min: 22
port_range_max: 22
- remote_ip_prefix: 0.0.0.0/0
protocol: tcp
port_range_min: 80
port_range_max: 80
- remote_ip_prefix: 0.0.0.0/0
protocol: tcp
port_range_min: 443
port_range_max: 443
- remote_group_id: { get_resource: stackato_ext_security_group }
remote_mode: remote_group_id
protocol: tcp
port_range_min: 1
port_range_max: 65535
- remote_group_id: { get_resource: stackato_ext_security_group }
remote_mode: remote_group_id
protocol: udp
port_range_min: 1
port_range_max: 65535
- remote_group_id: { get_resource: stackato_int_security_group }
remote_mode: remote_group_id
protocol: tcp
port_range_min: 1
port_range_max: 65535
- remote_group_id: { get_resource: stackato_int_security_group }
remote_mode: remote_group_id
protocol: udp
port_range_min: 1
port_range_max: 65535
stackato_int_security_group:
type: OS::Neutron::SecurityGroup
properties:
description: Add internal security group rules for Stackato
name: stackato-int
rules:
- remote_group_id: { get_resource: stackato_ext_security_group }
remote_mode: remote_group_id
protocol: tcp
port_range_min: 1
port_range_max: 65535
- remote_group_id: { get_resource: stackato_ext_security_group }
remote_mode: remote_group_id
protocol: udp
port_range_min: 1
port_range_max: 65535
- remote_group_id: { get_resource: stackato_int_security_group }
remote_mode: remote_group_id
protocol: tcp
port_range_min: 1
port_range_max: 65535
- remote_group_id: { get_resource: stackato_int_security_group }
remote_mode: remote_group_id
protocol: udp
port_range_min: 1
port_range_max: 65535
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment