BIG-IP® Security Groups¶
The following Heat templates can be used to deploy security groups in OpenStack that have the necessary settings to allow traffic to reach your BIG-IP®. These security groups correspond to the control, data, and management networks commonly used with BIG-IP®.
Control Security Group¶
This security group applies to the ‘control’ network used for high availability and mirroring. All devices in a device service cluster must be connected to the same ‘control’, or ‘HA’, network to use high availability features.
Data Security Group¶
This security group contains the necessary configurations for passing traffic to BIG-IP® data interfaces (e.g., ‘1.1’, ‘1.2’, ‘1.3’).
Management Security Group¶
This security group sets up the necessary configurations to allow incoming and outgoing traffic on the BIG-IP® management interface, which is dedicated to performing a specific set of system management functions.