Description of problem: OSP-Director requires that overcloud nodes obtain their password to enroll in the CA via the EC2 metadata IP (169.254.169.254). Unfortunately, this IP is not routable, so this doesn't work well for routed spine/leaf. Version-Release number of selected component (if applicable): Stein and all previous versions How reproducible: 100% Steps to Reproduce: 1. Deploy nodes using routed spine/leaf with TLS everywhere. 2. 3. Actual results: Nodes that are not on the same control plane subnet as the undercloud cannot reach the metadata server unless there exist routes on the routers that point 169.254.169.254 to the undercloud IP. Expected results: We should not rely on link-local addresses for routed installations. Additional info: The issue is that the 169.254.169.254 destination address is not known to the routers unless a special route is added for this address. This is not always permissible depending on network policy at specific sites. This is also an extra step that can be forgotten on some segments.
We ultimately want to remove the Metadata IP settings from the undercloud.
Closing this as fixed per comment 2.
Fixed under https://bugzilla.redhat.com/show_bug.cgi?id=1635370