Bug 1422082
Summary: | Module ip_conntrack_proto_sctp should be loaded when using netfilter/conntrack [Pike] | |||
---|---|---|---|---|
Product: | Red Hat OpenStack | Reporter: | Itzik Brown <itbrown> | |
Component: | openstack-tripleo-heat-templates | Assignee: | Itzik Brown <itbrown> | |
Status: | CLOSED ERRATA | QA Contact: | Itzik Brown <itbrown> | |
Severity: | medium | Docs Contact: | ||
Priority: | medium | |||
Version: | 10.0 (Newton) | CC: | aschultz, astafeye, mburns, nyechiel, oblaut, rhel-osp-director-maint, tvignaud | |
Target Milestone: | ga | Keywords: | Triaged | |
Target Release: | 12.0 (Pike) | |||
Hardware: | Unspecified | |||
OS: | Unspecified | |||
Whiteboard: | ||||
Fixed In Version: | openstack-tripleo-heat-templates-7.0.0-0.20170616123155.el7ost | Doc Type: | If docs needed, set a value | |
Doc Text: | Story Points: | --- | ||
Clone Of: | ||||
: | 1426911 1426912 (view as bug list) | Environment: |
N/A
|
|
Last Closed: | 2017-12-13 21:08:54 UTC | Type: | Bug | |
Regression: | --- | Mount Type: | --- | |
Documentation: | --- | CRM: | ||
Verified Versions: | Category: | --- | ||
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | ||
Cloudforms Team: | --- | Target Upstream Version: | ||
Embargoed: | ||||
Bug Depends On: | ||||
Bug Blocks: | 1426911, 1426912 |
Description
Itzik Brown
2017-02-14 12:43:03 UTC
To clarify, the ip_conntrack_proto_sctp module is needed for all networking backends that implement Neutron Security Groups using OVS conntrack, so that they can match/filter based on SCTP traffic. This list currently include ML2/OVS (via the OVS firewall driver), OVN, and OpenDaylight. This bugzilla has been removed from the release and needs to be reviewed and Triaged for another Target Release. Merged in master. *** Bug 1450647 has been marked as a duplicate of this bug. *** In RHEL 7.4 this is not a module anymore. Verified by adding a security group rule with SCTP and Sending SCTP traffic between RHEL images. On RHOS12 with OpenDaylight setup. openstack-tripleo-heat-templates-7.0.3-10.el7ost.noarch Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHEA-2017:3462 |