diff --git a/go-controller/pkg/node/gateway_shared_intf.go b/go-controller/pkg/node/gateway_shared_intf.go index 6ffeab8712d..94a244c0db4 100644 --- a/go-controller/pkg/node/gateway_shared_intf.go +++ b/go-controller/pkg/node/gateway_shared_intf.go @@ -954,6 +954,11 @@ func flowsForDefaultBridge(bridge *bridgeConfiguration, extraIPs []net.IP) ([]st continue } + // not needed for special masquerade IP + if ip.Equal(net.ParseIP(types.V4HostMasqueradeIP)) { + continue + } + dftFlows = append(dftFlows, fmt.Sprintf("cookie=%s, priority=500, in_port=%s, ip, ip_dst=%s, ip_src=%s,"+ "actions=ct(commit,zone=%d,table=4)", @@ -1005,6 +1010,11 @@ func flowsForDefaultBridge(bridge *bridgeConfiguration, extraIPs []net.IP) ([]st continue } + // not needed for special masquerade IP + if ip.Equal(net.ParseIP(types.V6HostMasqueradeIP)) { + continue + } + dftFlows = append(dftFlows, fmt.Sprintf("cookie=%s, priority=500, in_port=%s, ipv6, ipv6_dst=%s, ipv6_src=%s,"+ "actions=ct(commit,zone=%d,table=4)",