Link-local IPv6 blocked by anti-spoofing rules

Bug #1824426 reported by Ivan Kovacevic
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
networking-vpp
Fix Released
Undecided
Naveen Joy

Bug Description

Networking-VPP is not allowing link-local IPv6 address for VMs and thus breaking IPv6 stack:

Interface 13, name VirtualEthernet0/0/10 tag "net-vpp.port:fd29902e-7a4c-4a22-bbc2-eb18e3fb4353"
    MACIP 152 tag ""
        permit ipv4: fa:16:3e:7f:32:92 mask ff:ff:ff:ff:ff:ff 0.0.0.0/32
        permit ipv6: fa:16:3e:7f:32:92 mask ff:ff:ff:ff:ff:ff fd14:905:1301:386:f816:3eff:fe7f:3292/128
    ACL 1 (net-vpp.common_spoof.to-vpp, input)

This IP must be allowed to enable normal IPv6 functionality for VMs

Naveen Joy (najoy)
Changed in networking-vpp:
assignee: nobody → Naveen Joy (najoy)
status: New → Fix Committed
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix merged to networking-vpp (master)

Reviewed: https://review.opendev.org/652113
Committed: https://git.openstack.org/cgit/x/networking-vpp/commit/?id=011f19bc0f72284f2fec55b10a2ced7bc83fcc13
Submitter: Zuul
Branch: master

commit 011f19bc0f72284f2fec55b10a2ced7bc83fcc13
Author: Naveen Joy <email address hidden>
Date: Fri Apr 12 09:48:33 2019 -0700

    Permit link local IPv6 address-prefix

    Update the mac-ip permit list to allow the link-local IPv6
    address prefix.

    Closes-Bug: #1824426

    Change-Id: I8bdf4ba4b932f9512a45dd82d1b90edbf9d9483f

Changed in networking-vpp:
status: Fix Committed → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.