-
Epic
-
Resolution: Done
-
Critical
-
None
Goal
Productize NetworkPolicy API with OpenShift Virtualization on secondary networks.
User Stories
- As a developer,
I want to segment traffic on secondary networks. - As a cluster admin,
I need to enforce a network policy that allows VM-to-VM communication only within specific IP blocks,
restricting inter-VM traffic to predefined network boundaries. - As a cluster administrator,
I want to define a network policy that enables communication between a VM and a specific service running on a different node within the cluster,
but only if the traffic is limited to predefined IP blocks.
Non-Requirements
- namespaceSelector and podSelector policies are covered by https://issues.redhat.com/browse/CNV-25451
Notes
- <...>
Done Checklist
Who | What | Reference |
---|---|---|
DEV | Upstream roadmap issue | N/A |
DEV | Upstream code and tests merged | https://github.com/ovn-org/ovn-kubernetes/pull/3814 |
DEV | Upstream documentation merged | https://github.com/ovn-org/ovn-kubernetes/blob/master/docs/multi-homing.md#multi-network-policies |
DEV | gap doc updated | N/A |
DEV | Upgrade consideration | None |
DEV | CEE/PX summary presentation | N/A |
QE | Test plans in Polarion | https://polarion.engineering.redhat.com/polarion/#/project/CNV/workitem?id=CNV-10456 |
QE | Automated tests merged | https://code.engineering.redhat.com/gerrit/c/cnv-tests/+/450272/6..8 |
DOC | Downstream documentation merged | https://github.com/openshift/openshift-docs/pull/71717 |
- is cloned by
-
CNV-25451 OVN Kubernetes multi-homing in CNV: *Selector Policies
- Backlog
- is depended on by
-
CNV-36170 UI for OVN Kubernetes multi-homing in CNV: ipBlock Policies
- Closed
- is related to
-
CNV-35994 Feature Learning
- Closed
-
CNV-35995 Test Design
- Closed
-
CNV-35997 Bug-Fix Iteration 1
- Closed
-
CNV-35998 Manual Testing
- Closed
-
CNV-35999 [IpBlock] Automation infrastructure changes
- Closed
-
CNV-36000 Automation Test Case Adjustment
- Closed
-
CNV-36001 Automation Testing development
- Closed
-
CNV-36002 [IpBlock] Code Merge to CNV-Tests Framework
- Closed
-
CNV-35996 Exploratory Testing Session
- Closed
- relates to
-
CNV-36002 [IpBlock] Code Merge to CNV-Tests Framework
- Closed