Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

OpenvSwitch meshing #97

Open
horazont opened this issue Jun 18, 2021 · 0 comments
Open

OpenvSwitch meshing #97

horazont opened this issue Jun 18, 2021 · 0 comments

Comments

@horazont
Copy link
Member

horazont commented Jun 18, 2021

See SovereignCloudStack/docs#98 for my definition of Prio 1-4.

  • Prio 1: As a Cloud Operator, I want to know if the OpenvSwitch(**) agent fails to complete its first synchronization iteration without error, because that iteration is vital for the functioning and lack of a successful first iteration causes the below alert and customer visible impact.

    The potential action is to investigate why the first iteration did not complete, resolve the issue and restart the OpenvSwitch agent. If that is not feasible, workload needs to be migrated off the node.

  • Prio 3 or higher*: as a Cloud Operator, I want to know if an OpenStack Network on a compute node with the OpenvSwitch agent(**) is lacking any of the following tunnels (VXLAN or VLAN) configured:

    • to a DHCP node with an DHCP instance for any subnet in the network; the corresponding flow rule must allow broadcast traffic.
    • to an L3 node with an L3 router instance with a port in any subnet in the network; the corresponding flow rule must allow broadcast traffic.
    • to another compute node with a compute instance with a port in any subnet in the network; the corresponding flow rule must allow broadcast traffic.

    because lack of those rules can cause loss of DHCP leases, loss of communication between some instances in the same network and loss of internet connectivity for instances.

(*) See footnote in SovereignCloudStack/docs#98.
(**) I am not sure what SCS intends to use; I am not sure if the same in a different flavour applies for instance to OVN.

@itrich itrich transferred this issue from another repository Aug 12, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant