OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

tosca message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]


Subject: RE: [tosca] TOSCA Network types


Hi Yaron,
Sorry for the late response.
Indeed, applying security means on application VMs is an important use case.
My initial thought is that like we did for networks (with 2 co-exist approaches) we can do for security groups.
One option will be to explicitly define the security group in service/network template with its rules. 
The 2nd option will be probably addressed by the Connectivity Semantics that is introduced in the 1st approach for networks. In high level, you define the desired connectivity between application VMs including which L4 ports should be open and which protocols. 

Thanks,
-Avi

-----Original Message-----
From: tosca@lists.oasis-open.org [mailto:tosca@lists.oasis-open.org] On Behalf Of Yaron Parasol
Sent: יום ה 28 אוגוסט 2014 10:16
To: tosca@lists.oasis-open.org
Subject: [tosca] TOSCA Network types

Hi,

I reviewed the interesting work done by Avi. I didn't see any reference to Security Groups and their rules. I suggest a security group will be a node in the application as it is a critical link between Network and VMs and has applicative implications.
Love to hear your thoughts

Yaron


[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]