Uploaded image for project: 'OpenShift Bugs'
  1. OpenShift Bugs
  2. OCPBUGS-28927

IPSec pre-requisite section needs to be revised and Hypershift Hosted needs to be excluded from IPsec EW support

XMLWordPrintable

    • Quality / Stability / Reliability
    • False
    • Hide

      None

      Show
      None
    • None
    • Critical
    • No
    • None
    • None
    • None
    • None
    • In Progress
    • Release Note Not Required
    • None
    • None
    • None
    • None
    • None

      Description of problem:

      https://docs.openshift.com/container-platform/4.14/networking/ovn_kubernetes_network_provider/configuring-ipsec-ovn.html#configuring-ipsec-ovn-prerequisites
      
      We started supporting runtime enablement of IPsec since 4.11 via https://issues.redhat.com/browse/SDN-1571 which takes care of migrating cluster network MTU to accomodate 46 bytes header size required for IPsec. So it was never a pre-requisite as runtime enablement takes care of it
      
      We also need to exclaim on releases which supports Hypershift  (4.11+) that "IPSec EW is not supported on Hosted clusters but just management" 

      Version-Release number of selected component (if applicable):

          

      How reproducible:

          

      Steps to Reproduce:

          1.
          2.
          3.
          

      Actual results:

          

      Expected results:

          

      Additional info:

          

              jboxman@redhat.com Jason Boxman
              anusaxen Anurag Saxena
              None
              None
              Anurag Saxena Anurag Saxena
              None
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

                Created:
                Updated:
                Resolved: