Chain INPUT (policy ACCEPT 187K packets, 823M bytes) pkts bytes target prot opt in out source destination 5279 2236K neutron-openvswi-INPUT all -- * * 0.0.0.0/0 0.0.0.0/0 4014 380K ACCEPT tcp -- * * 38.102.83.97 0.0.0.0/0 multiport dports 5671,5672 /* 001 amqp incoming amqp_38.102.83.97 */ 747 17M ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 9292 /* 001 glance incoming glance_api */ 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 8000 /* 001 heat cfn incoming heat_cfn */ 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 8004 /* 001 heat incoming heat */ 2446 425K ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 5000 /* 001 keystone incoming keystone */ 121K 28M ACCEPT tcp -- * * 38.102.83.97 0.0.0.0/0 multiport dports 3306 /* 001 mariadb incoming mariadb_38.102.83.97 */ 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 67 /* 001 neutron dhcp in incoming neutron_dhcp_in_38.102.83.97 */ 154 25701 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 9696 /* 001 neutron server incoming neutron_server_38.102.83.97 */ 0 0 ACCEPT udp -- * * 38.102.83.97 0.0.0.0/0 udp dpt:4789 /* 001 neutron tunnel port incoming neutron_tunnel_38.102.83.97_38.102.83.97 */ 97 12850 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 8773,8774,8775,8778 /* 001 nova api incoming nova_api */ 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 6080 /* 001 novncproxy incoming */ 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 8386 /* 001 sahara api incoming sahara-api */ 1926 16M ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 8080 /* 001 swift proxy incoming swift_proxy */ 713 16M ACCEPT tcp -- * * 38.102.83.97 0.0.0.0/0 multiport dports 6000,6001,6002,873 /* 001 swift storage and rsync incoming swift_storage_and_rsync_38.102.83.97 */ 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 8779 /* 001 trove api incoming trove */ 12980 46M ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:22 21 1260 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 state NEW tcp dpt:19885 Chain FORWARD (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 neutron-filter-top all -- * * 0.0.0.0/0 0.0.0.0/0 0 0 neutron-openvswi-FORWARD all -- * * 0.0.0.0/0 0.0.0.0/0 0 0 ACCEPT all -- br-ex * 0.0.0.0/0 0.0.0.0/0 /* 000 forward in */ 0 0 ACCEPT all -- * br-ex 0.0.0.0/0 0.0.0.0/0 /* 000 forward out */ Chain OUTPUT (policy ACCEPT 314K packets, 134M bytes) pkts bytes target prot opt in out source destination 5298 2438K neutron-filter-top all -- * * 0.0.0.0/0 0.0.0.0/0 5298 2438K neutron-openvswi-OUTPUT all -- * * 0.0.0.0/0 0.0.0.0/0 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 68 /* 001 neutron dhcp out outgoing neutron_dhcp_out_38.102.83.97 */ Chain neutron-filter-top (2 references) pkts bytes target prot opt in out source destination 5298 2438K neutron-openvswi-local all -- * * 0.0.0.0/0 0.0.0.0/0 Chain neutron-openvswi-FORWARD (1 references) pkts bytes target prot opt in out source destination 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 PHYSDEV match --physdev-out tapa9633574-bb --physdev-is-bridged /* Accept all packets when port is trusted. */ 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 PHYSDEV match --physdev-in tapa9633574-bb --physdev-is-bridged /* Accept all packets when port is trusted. */ 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 PHYSDEV match --physdev-out tap22627563-27 --physdev-is-bridged /* Accept all packets when port is trusted. */ 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 PHYSDEV match --physdev-in tap22627563-27 --physdev-is-bridged /* Accept all packets when port is trusted. */ 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 PHYSDEV match --physdev-out tap8b2cc063-dc --physdev-is-bridged /* Accept all packets when port is trusted. */ 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 PHYSDEV match --physdev-in tap8b2cc063-dc --physdev-is-bridged /* Accept all packets when port is trusted. */ Chain neutron-openvswi-INPUT (1 references) pkts bytes target prot opt in out source destination Chain neutron-openvswi-OUTPUT (1 references) pkts bytes target prot opt in out source destination Chain neutron-openvswi-local (1 references) pkts bytes target prot opt in out source destination Chain neutron-openvswi-sg-chain (0 references) pkts bytes target prot opt in out source destination 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 Chain neutron-openvswi-sg-fallback (0 references) pkts bytes target prot opt in out source destination 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 /* Default drop rule for unmatched traffic. */