Uploaded image for project: 'OpenShift Bugs'
  1. OpenShift Bugs
  2. OCPBUGS-19494

when ovn ipsec pod stop/restart it kills pluto preventing further IPsec IKE communication

XMLWordPrintable

    • No
    • Rejected
    • False
    • Hide

      None

      Show
      None

      Description of problem:

      ipsec container kills pluto even if that was started by systemd
      
      

      Version-Release number of selected component (if applicable):

      on any 4.14 nightly
      
      

      How reproducible:

      every time 
      
      

      Steps to Reproduce:

      1. enable N-S ipsec
      2. enable E-W IPsec
      3. kill/stop/delete one of the ipsec-host pods
      
      

      Actual results:

      pluto is killed on that host
      
      

      Expected results:

      pluto keeps running
      
      

      Additional info:

      https://github.com/yuvalk/cluster-network-operator/blob/37d1cc72f4f6cd999046bd487a705e6da31301a5/bindata/network/ovn-kubernetes/common/ipsec-host.yaml#L235
      this should be removed
      
      

            ykashtan Yuval Kashtan
            ykashtan Yuval Kashtan
            Huiran Wang Huiran Wang
            Votes:
            0 Vote for this issue
            Watchers:
            7 Start watching this issue

              Created:
              Updated:
              Resolved: