Bug 831528
| Summary: | 3.1 - Allow multiple VLANed network together with on only one non-VLANed bridgeless network on top of NIC/Bond | ||
|---|---|---|---|
| Product: | Red Hat Enterprise Linux 6 | Reporter: | Igor Lvovsky <ilvovsky> |
| Component: | vdsm | Assignee: | Igor Lvovsky <ilvovsky> |
| Status: | CLOSED ERRATA | QA Contact: | GenadiC <gcheresh> |
| Severity: | unspecified | Docs Contact: | |
| Priority: | unspecified | ||
| Version: | 6.4 | CC: | abaron, aburden, bazulay, cpelland, dkenigsb, iheim, jbiddle, lpeer, mavital, sgrinber, yeylon, ykaul |
| Target Milestone: | rc | ||
| Target Release: | --- | ||
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | Networking | ||
| Fixed In Version: | vdsm-4.9.6-25.0 | Doc Type: | Bug Fix |
| Doc Text: |
Previously, the VDSM was unable to attach several VLANed networks to same NIC/bond interface. This upgrade allows multiple VLANed networks to be attached. In order to ensure network security this feature has been restricted to the following configurations: a single bridged non-VLANed network, or a single bridgeless non-VLANed network plus any amount of bridged/bridgeless VLANed networks.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | 2012-12-04 18:59:49 UTC | Type: | Bug |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | |||
| Bug Blocks: | 841513 | ||
|
Description
Igor Lvovsky
2012-06-13 08:51:55 UTC
We should not allow running VMs on the non-VLANed network to avoid security breatch, the network should be bridgeless. Only following combinations are allowed:
- single non-VLANed bridged network
- multiple VLANed networks (bridged/bridgeless) with only one
non-VLANed bridgeless network
This should be verified for bond and nic interfaces separately.
http://gerrit.ovirt.org/#/c/6384/
Verified in SI13 besides the case that its impossible to create combination on VLAN and non_VLAN non_VM network in one step Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. http://rhn.redhat.com/errata/RHSA-2012-1508.html |