Uploaded image for project: 'OpenStack as Infra'
  1. OpenStack as Infra
  2. OSASINFRA-3296

CAPO: new API for Security Groups

XMLWordPrintable

    • CAPO: new API for Security Groups
    • BU Product Work
    • 5
    • False
    • None
    • False
    • Not Selected
    • To Do
    • OCPSTRAT-1429 - CAPO is functionally equivalent to what installer/terraform did pre 4.16
    • OCPSTRAT-1429CAPO is functionally equivalent to what installer/terraform did pre 4.16
    • ShiftStack Sprint 245, ShiftStack Sprint 246, ShiftStack Sprint 247, ShiftStack Sprint 248

      Currently, CAPO is very opinionated when Security Groups are managed and over time too many rules were added without enough flexibility.

      In OpenShift, we need more than the default rules for both the control plane & security group. Also, we need to replace Terraform to create additional Security Groups that will later be used by the machines.

      We want to achieve this in CAPO.

       

      Upstream issue: https://github.com/kubernetes-sigs/cluster-api-provider-openstack/issues/1752

      Upstream KEP: https://github.com/kubernetes-sigs/cluster-api-provider-openstack/pull/1756

       

              emacchi@redhat.com Emilien Macchi
              emacchi@redhat.com Emilien Macchi
              Gil Rosenberg Gil Rosenberg
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated: