From 19655366bb3c18e8f9900376da880367907cab30 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Franti=C5=A1ek=20Dvo=C5=99=C3=A1k?= <valtri@civ.zcu.cz> Date: Wed, 23 Dec 2020 23:28:37 +0100 Subject: [PATCH] Remove pointless update of the floaitingip security rule It is better to use full CIDR even for particular IP adresses. --- firewall.tf | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/firewall.tf b/firewall.tf index 3e896c8..b0b9c77 100644 --- a/firewall.tf +++ b/firewall.tf @@ -50,6 +50,6 @@ resource "openstack_networking_secgroup_rule_v2" "secgroup_rule_other6" { resource "openstack_networking_secgroup_rule_v2" "secgroup_rule_floatip" { direction = "ingress" ethertype = "IPv4" - remote_ip_prefix = openstack_networking_floatingip_v2.floatip_1.address + remote_ip_prefix = "${openstack_networking_floatingip_v2.floatip_1.address}/32" security_group_id = openstack_networking_secgroup_v2.secgroup.id } -- GitLab