Uploaded image for project: 'OpenShift Virtualization'
  1. OpenShift Virtualization
  2. CNV-33753

OVN Kubernetes multi-homing in CNV: Egress

XMLWordPrintable

    • cnv-ovn2k-egress
    • Hide
      • (must-have) VMs can egress to the internet over the secondary network
      • (must-have) Secondary NICs of VMs can be exposed to the internet using LoadBalancer services
      • (must-have) The solution must run in cloud providers (tolerate port security, or its equivalents)
      • (must-have) One of:
        • IPAM must assign a unique subnet to each secondary network
        • OR
        • Must handle overlapping CIDRs (and duplicated CIDRs) among the secondary networks
      • (must-have) Downstream documentation mentioning this option in our existing docs
      • (must-have) Tier-2 test coverage
      Show
      (must-have) VMs can egress to the internet over the secondary network (must-have) Secondary NICs of VMs can be exposed to the internet using LoadBalancer services (must-have) The solution must run in cloud providers (tolerate port security, or its equivalents) (must-have) One of: IPAM must assign a unique subnet to each secondary network OR Must handle overlapping CIDRs (and duplicated CIDRs) among the secondary networks (must-have) Downstream documentation mentioning this option in our existing docs (must-have) Tier-2 test coverage
    • Green
    • To Do
    • CNV-16692 - OVN Secondary Network
    • CNV-16692OVN Secondary Network
    • 67% To Do, 0% In Progress, 33% Done
    • dev-ready, doc-ready, po-ready, qe-ready, ux-ready
    • Hide

      2024-03-06: There are no blockers we know of. The proposal was well received. This functionality is also sought after by our upstream partners. However, since these discussions are in their early stage and we have to complete IPAM CNV-24260 first, I'm ...

      Show
      2024-03-06: There are no blockers we know of. The proposal was well received. This functionality is also sought after by our upstream partners. However, since these discussions are in their early stage and we have to complete IPAM CNV-24260 first, I'm ...

      Goal

      Provide secondary overlay networks with access to the external network.

      User Stories

      • As an owner of a VM that is connected only to a secondary overlay network, I want to fetch resources from outside networks (internet).
      • I do not want to change my application to support multiple NICs.

      Non-Requirements

      Notes

      • Once we have both ingress and egress, we may be able to obsolete the custom solution on OVN-K introduced for HyperShift.

            phoracek@redhat.com Petr Horacek
            phoracek@redhat.com Petr Horacek
            Nir Rozen Nir Rozen
            Votes:
            0 Vote for this issue
            Watchers:
            5 Start watching this issue

              Created:
              Updated: