Uploaded image for project: 'OpenShift Core Networking'
  1. OpenShift Core Networking
  2. CORENET-5667

Secondary nets: implement support for nested virtualization

XMLWordPrintable

    • Product / Portfolio Work
    • False
    • Hide

      None

      Show
      None
    • False
    • 5
    • None
    • None
    • None

      Allow users to connect to connect to the secondary OVN Kubernetes network from an arbitrary MAC.

      We would need to introduce 3 different knobs (try to make them fit in the API ...):

      • opt-out of port security for their networks
      • allow traffic to unknown addresses
      • force_fdb_lookup which disables ARPs from being always sent to all LSPs connected to the OVS bridge

      The first two knobs are required for L2 switched nested virtualization.

      Opting out of port security achieves routed nested virtualization.

      The last knob is a performance improvement, which will ensure the data-plane is less congested.

       

              Unassigned Unassigned
              mduarted@redhat.com Miguel Duarte de Mora Barroso
              None
              None
              None
              None
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated: