Bug 1434016
Summary: | OSP10 networks and ports created with port_security_enabled=false are "disconnected" | ||
---|---|---|---|
Product: | Red Hat OpenStack | Reporter: | Mark Lamourine <mlamouri> |
Component: | openstack-neutron | Assignee: | Assaf Muller <amuller> |
Status: | CLOSED DUPLICATE | QA Contact: | Toni Freger <tfreger> |
Severity: | high | Docs Contact: | |
Priority: | unspecified | ||
Version: | 10.0 (Newton) | CC: | amuller, chrisw, mburns, mlamouri, nyechiel, rhel-osp-director-maint, sbaker, shardy, srevivo |
Target Milestone: | --- | ||
Target Release: | --- | ||
Hardware: | Unspecified | ||
OS: | Linux | ||
Whiteboard: | |||
Fixed In Version: | Doc Type: | If docs needed, set a value | |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2017-03-22 12:57:33 UTC | Type: | Bug |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Attachments: |
Description
Mark Lamourine
2017-03-20 14:41:09 UTC
It appears that it is not heat, but neutron that is the source of the problem. Creating the network with the CLI manifests the same problem: openstack network create --disable-port-security tenant-network openstack subnet create --network tenant-network --subnet-range 172.18.20.0/24 tenant-subnet Instances connected to 'tenant-network' will show the interface as present but disconnected. Created attachment 1264830 [details]
CLI shell only test run
This script creates the required networks and a single host attached to both.
Adjust key values (image, key, public_network, nameserver) as needed.
If the PORT_SECURITY variable is false, then the eth1 network shows disconnected.
If it is set true then the eth1 network comes up as expected and is configured by DHCP.
You must log in and observe the journalctl for eth1 and attempt to up/down the interface.
Created attachment 1264844 [details]
script to create a host with port security disabled on eth1 (corrected)
This is a better version of the previous. it doesn't re-create after cleaning.
- Mark
Created attachment 1264845 [details]
Updated PROPERLY - a script to create a host with port-security disabled on eth1
Can you please upload an SOS report from a compute node and a controller node, and specify a timestamp in which you created a VM with port security equal to False? Um... what's an SOS report and how do I generate one? Links are fine. (In reply to Mark Lamourine from comment #6) > Um... what's an SOS report and how do I generate one? Links are fine. https://access.redhat.com/solutions/3592 Assaf: thanks, and apologies for my lack of knowledge. Roger Lopez did a search and found that this is likely a duplicate of BZ1406263 *** This bug has been marked as a duplicate of bug 1406263 *** |