Uploaded image for project: 'OpenShift Virtualization'
  1. OpenShift Virtualization
  2. CNV-52140

[TP] User-defined networks: Passt

XMLWordPrintable

    • tp-udn-passt
    • 77
    • Hide
      • Passt is available as an alternative binding for primary UDN interfaces
      • virtctl ssh works
      • ACS monitoring works
      • Tier-2 UDN tests executed with the "old" and the "passt" bindings and all of them pass
      • Ingress TCP sessions stay open during live migration
      • Downstream docs
      Show
      Passt is available as an alternative binding for primary UDN interfaces virtctl ssh works ACS monitoring works Tier-2 UDN tests executed with the "old" and the "passt" bindings and all of them pass Ingress TCP sessions stay open during live migration Downstream docs
    • To Do
    • CNV-51923 - Improved compability between primary UDN network and the rest of the ecosystem
    • CNV-51923Improved compability between primary UDN network and the rest of the ecosystem
    • 67% To Do, 0% In Progress, 33% Done
    • doc-ready

      Goal

      Productize passt as an alternative binding used for primary user-defined networks. Passt should provide us with a maintainable solution that allows seamless integration with network probes, ACS, Istio, etc.

      User Stories

      • As a VM user, I want to be able to SSH to my VM for management operations over KAPI, so I don't have to expose my VM's SSH port to the internet.
      • As a VM user, I want to have an insight into communication between applications running in my system, so I can troubleshoot issues and spot security threats.
      • As a CNV developer, I want to rely on a third-party component for binding, so I don't have to maintain my own.
      • As a CNV developer, I want this component to seamlessly support (almost) anything that would work for Pods for VMs as well, so I don't have to invest in custom solution and integration testing with every tool in the OCP ecosystem.

      Non-Requirements

      • <List of things not included in this epic, to alleviate any doubt raised during the grooming process.>

      Notes

      • Make sure we exclude well known ports that should stay in the Pod netns in passt (if there are any currently handled that way with masquerade)
      • UI work is tracked in CNV-52151

          1.
          upstream roadmap issue Sub-task New Normal Unassigned
          2.
          upstream design Sub-task New Normal Unassigned
          3.
          upstream documentation Sub-task New Normal Unassigned
          4.
          upgrade consideration Sub-task New Normal Unassigned
          5.
          CEE/PX summary presentation Sub-task New Normal Unassigned
          6.
          test plans in polarion Sub-task New Normal Unassigned
          7.
          automated tests Sub-task New Normal Unassigned
          8.
          downstream documentation merged Sub-task New Normal Unassigned

              phoracek@redhat.com Petr Horacek
              phoracek@redhat.com Petr Horacek
              Yossi Segev Yossi Segev
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated: