Activity log for bug #1916369

Date Who What changed Old value New value Message
2021-02-21 04:01:56 Howard Yu bug added bug
2021-02-21 04:05:04 Howard Yu description We are testing a simple SFC in OpenStack (Stein) + OpenDaylight (Neon) + Open vSwitch (v2.11.1). It's an all-in-one deployment. client -> vm1 -> vm2 -> server are all on same compute node. Build SFC through API: $ openstack sfc flow classifier create --source-ip-prefix 10.20.0.0/24 --logical-source-port p0 FC1 $ openstack sfc port pair create --description "Firewall SF instance 1" --ingress p1 --egress p1 --service-function-parameters correlation=None PP1 $ openstack sfc port pair group create --port-pair PP1 PPG1 $ openstack sfc port chain create --port-pair-group PPG1 --flow-classifier FC1 --chain-parameters correlation=nsh PC1 Ping from client to server, but packet did not pass through firewall,open vswitch log show: https://stackoverflow.com/questions/66208807/service-function-chain-nsh-header-transmission-issue Is there something wrong with the instructions? Or there may be some bugs in "networking-sfc"? Thanks! We are testing a simple SFC in OpenStack (Stein) + OpenDaylight (Neon) + Open vSwitch (v2.11.1). It's an all-in-one deployment. client -> vm1 -> vm2 -> server are all on same compute node. 10.20.0.125 10.20.0.111 + ------- + + ---------- + +------- + | | |(iptable) | | | | Client | | Firewall | | Server | + ------- + + ---------- + +------- + p0 p1 | | | | |____________|_________________| Build SFC through API: $ openstack sfc flow classifier create --source-ip-prefix 10.20.0.0/24 --logical-source-port p0 FC1 $ openstack sfc port pair create --description "Firewall SF instance 1" --ingress p1 --egress p1 --service-function-parameters correlation=None PP1 $ openstack sfc port pair group create --port-pair PP1 PPG1 $ openstack sfc port chain create --port-pair-group PPG1 --flow-classifier FC1 --chain-parameters correlation=nsh PC1 Ping from client to server, but packet did not pass through firewall,open vswitch log show: https://stackoverflow.com/questions/66208807/service-function-chain-nsh-header-transmission-issue Is there something wrong with the instructions? Or there may be some bugs in "networking-sfc"? Thanks!
2021-02-21 04:05:25 Howard Yu description We are testing a simple SFC in OpenStack (Stein) + OpenDaylight (Neon) + Open vSwitch (v2.11.1). It's an all-in-one deployment. client -> vm1 -> vm2 -> server are all on same compute node. 10.20.0.125 10.20.0.111 + ------- + + ---------- + +------- + | | |(iptable) | | | | Client | | Firewall | | Server | + ------- + + ---------- + +------- + p0 p1 | | | | |____________|_________________| Build SFC through API: $ openstack sfc flow classifier create --source-ip-prefix 10.20.0.0/24 --logical-source-port p0 FC1 $ openstack sfc port pair create --description "Firewall SF instance 1" --ingress p1 --egress p1 --service-function-parameters correlation=None PP1 $ openstack sfc port pair group create --port-pair PP1 PPG1 $ openstack sfc port chain create --port-pair-group PPG1 --flow-classifier FC1 --chain-parameters correlation=nsh PC1 Ping from client to server, but packet did not pass through firewall,open vswitch log show: https://stackoverflow.com/questions/66208807/service-function-chain-nsh-header-transmission-issue Is there something wrong with the instructions? Or there may be some bugs in "networking-sfc"? Thanks! We are testing a simple SFC in OpenStack (Stein) + OpenDaylight (Neon) + Open vSwitch (v2.11.1). It's an all-in-one deployment. client -> vm1 -> vm2 -> server are all on same compute node. 10.20.0.125 10.20.0.111 + ------- + + ----------- + + ------- + | | |(iptable) | | | | Client | | Firewall | | Server | + ------- + + ----------- + + -------- + p0 p1 | | | | |____________|____________| Build SFC through API: $ openstack sfc flow classifier create --source-ip-prefix 10.20.0.0/24 --logical-source-port p0 FC1 $ openstack sfc port pair create --description "Firewall SF instance 1" --ingress p1 --egress p1 --service-function-parameters correlation=None PP1 $ openstack sfc port pair group create --port-pair PP1 PPG1 $ openstack sfc port chain create --port-pair-group PPG1 --flow-classifier FC1 --chain-parameters correlation=nsh PC1 Ping from client to server, but packet did not pass through firewall,open vswitch log show: https://stackoverflow.com/questions/66208807/service-function-chain-nsh-header-transmission-issue Is there something wrong with the instructions? Or there may be some bugs in "networking-sfc"? Thanks!
2021-02-21 04:05:55 Howard Yu description We are testing a simple SFC in OpenStack (Stein) + OpenDaylight (Neon) + Open vSwitch (v2.11.1). It's an all-in-one deployment. client -> vm1 -> vm2 -> server are all on same compute node. 10.20.0.125 10.20.0.111 + ------- + + ----------- + + ------- + | | |(iptable) | | | | Client | | Firewall | | Server | + ------- + + ----------- + + -------- + p0 p1 | | | | |____________|____________| Build SFC through API: $ openstack sfc flow classifier create --source-ip-prefix 10.20.0.0/24 --logical-source-port p0 FC1 $ openstack sfc port pair create --description "Firewall SF instance 1" --ingress p1 --egress p1 --service-function-parameters correlation=None PP1 $ openstack sfc port pair group create --port-pair PP1 PPG1 $ openstack sfc port chain create --port-pair-group PPG1 --flow-classifier FC1 --chain-parameters correlation=nsh PC1 Ping from client to server, but packet did not pass through firewall,open vswitch log show: https://stackoverflow.com/questions/66208807/service-function-chain-nsh-header-transmission-issue Is there something wrong with the instructions? Or there may be some bugs in "networking-sfc"? Thanks! We are testing a simple SFC in OpenStack (Stein) + OpenDaylight (Neon) + Open vSwitch (v2.11.1). It's an all-in-one deployment. client -> vm1 -> vm2 -> server are all on same compute node. Build SFC through API: $ openstack sfc flow classifier create --source-ip-prefix 10.20.0.0/24 --logical-source-port p0 FC1 $ openstack sfc port pair create --description "Firewall SF instance 1" --ingress p1 --egress p1 --service-function-parameters correlation=None PP1 $ openstack sfc port pair group create --port-pair PP1 PPG1 $ openstack sfc port chain create --port-pair-group PPG1 --flow-classifier FC1 --chain-parameters correlation=nsh PC1 Ping from client to server, but packet did not pass through firewall,open vswitch log show: https://stackoverflow.com/questions/66208807/service-function-chain-nsh-header-transmission-issue Is there something wrong with the instructions? Or there may be some bugs in "networking-sfc"? Thanks!