https://jira.ewr01.tumblr.net/browse/SYSSRE-3264
iptables is reported as breaking access to a booted node and since it isn't providing any protection we don't need it.
Bottom line is don't start it.
FYI, kickstart is unhappy with attempts to remove it because of package and selinux dependencies.
Tested on a virtual testenv node and real physical node too.
This is currently the genesis test ipxe image.
https://jira.ewr01.tumblr.net/browse/SYSSRE-3264 iptables is reported as breaking access to a booted node and since it isn't providing any protection we don't need it. Bottom line is don't start it. FYI, kickstart is unhappy with attempts to remove it because of package and selinux dependencies.
Tested on a virtual testenv node and real physical node too. This is currently the genesis test ipxe image.
@Primer42 @byxorna @defect @maddalab rfr