Bug 1468035 - [RFE] Support migration from IPTables firewall driver to Open vSwitch
Summary: [RFE] Support migration from IPTables firewall driver to Open vSwitch
Keywords:
Status: CLOSED WONTFIX
Alias: None
Product: Red Hat OpenStack
Classification: Red Hat
Component: openstack-neutron
Version: 13.0 (Queens)
Hardware: Unspecified
OS: Unspecified
unspecified
unspecified
Target Milestone: ---
: ---
Assignee: Assaf Muller
QA Contact: Toni Freger
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2017-07-05 19:59 UTC by Ihar Hrachyshka
Modified: 2022-08-17 13:39 UTC (History)
5 users (show)

Fixed In Version:
Doc Type: If docs needed, set a value
Doc Text:
Clone Of:
Environment:
Last Closed: 2019-02-11 09:05:34 UTC
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Issue Tracker OSP-4446 0 None None None 2022-08-17 13:39:44 UTC

Description Ihar Hrachyshka 2017-07-05 19:59:19 UTC
This is a follow up to the base RFE that covers implementation for the new firewall driver that is: https://bugzilla.redhat.com/show_bug.cgi?id=1385341 A decision was made to split out migration between drivers into a separate RFE tracked for Queens, hence this new RFE.

This migration may be important for OVN efforts depending on how OVS-to-OVN migration itself is implemented.

Comment 1 Red Hat Bugzilla Rules Engine 2017-07-05 19:59:36 UTC
This bugzilla has been removed from the release and needs to be reviewed and Triaged for another Target Release.

Comment 2 Nir Yechiel 2018-03-18 11:27:17 UTC
As we move to OVN, I don't see any need to prioritize this work (which is specific to ml2/ovs). @Assaf, before I close this bug - can you confirm that I am not missing anything?

Comment 3 Nir Yechiel 2018-03-18 11:29:01 UTC
(In reply to Nir Yechiel from comment #2)
> As we move to OVN, I don't see any need to prioritize this work (which is
> specific to ml2/ovs). @Assaf, before I close this bug - can you confirm that
> I am not missing anything?

I guess my main question is do we want to migrate ml2/ovs customers to the native OVS firewall driver before we migrate them to OVN?

Comment 4 Franck Baudin 2019-02-11 09:05:34 UTC
Entreprise use case should migrate to OVN. And for NVF, they already use openvswitch firewall (iptables has never been an option with OVS-DPDK).


Note You need to log in before you can comment on or make changes to this bug.