-
Notifications
You must be signed in to change notification settings - Fork 14
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Default Zone Changes Not "Sticking" #247
Comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
By default, NetworkManager is assuming partial ownership of eth0:
NetworkManager will tell firewalld what zone to use but firewalld won't tell NetworkManager. Upon applying salt states that update the default zone via firewalld, the active firewall state will change. However, at reboot, NetworkManager will revert the default zone. Need add logic to either:
NM_CONTROLLED
to"false"
in the/etc/sysconfig/network-scripts/ifcfg-<IF>
file)nmcli connection modify "System eth0" connection.zone drop
is run concurrent to the firewalld commandsDown-side to 2nd and 3rd options is that the default interface can vary depending on deployment-type (most cases will be
eth0
[2nd bullet] orSystem eth0
[3rd bullet] but not all cases [mostly physical hosts and some virtalization platforms - like VirtualBox])The text was updated successfully, but these errors were encountered: