1 安装
$yum install openstack-neutron-fwaas
2 配置
$vim /etc/neutron/fwaas.ini
[FWaaS]
driver = neutron.services.firewall.drivers.linux.iptables_fwaas.IptablesFwaasDriver
enabled = True
$vim /usr/lib/python2.7/site-packages/neutron_fwaas-11.0.1-py2.7.egg-info/entry_points.txt
[neutron.agent.l3.extensions]
fwaas = neutron_fwaas.services.firewall.agents.l3reference.firewall_l3_agent:L3WithFWaaS
fwaas_v2 = neutron_fwaas.services.firewall.agents.l3reference.firewall_l3_agent_v2:L3WithFWaaS
[neutron.service_plugins]
firewall = neutron_fwaas.services.firewall.fwaas_plugin:FirewallPlugin
firewall_v2 = neutron_fwaas.services.firewall.fwaas_plugin_v2:FirewallPluginV2
neutron.services.firewall.fwaas_plugin.FirewallPlugin = neutron_fwaas.services.firewall.fwaas_plugin:FirewallPlugin
$vim /etc/neutron/neutron.conf
[DEFAULT]
... ...
service_plugins = router,firewall
api_extensions_path = /usr/lib/python2.7/site-packages/neutron_fwaas/extensions
3 同步数据库
neutron-db-manage --service fwaas upgrade head