@Tocayo Miguel Ajo,
Thanks for the testing. Much appreciated
Based on this I think we can move ahead with the "fixing" part, which involves:
1) port_dead to always set dead tag on new unbound ports in Neutron 2) Enforce dead tag for new ovs ports in nova / os-vif
What are the mechanics of creating, reviewing and merging these two patches under the embargo conditions of this CVE? I am available to work on this
I'll still loop in someone from ODL to make sure they are fine with the proposed approach
@Tocayo Miguel Ajo,
Thanks for the testing. Much appreciated
Based on this I think we can move ahead with the "fixing" part, which involves:
1) port_dead to always set dead tag on new unbound ports in Neutron
2) Enforce dead tag for new ovs ports in nova / os-vif
What are the mechanics of creating, reviewing and merging these two patches under the embargo conditions of this CVE? I am available to work on this
I'll still loop in someone from ODL to make sure they are fine with the proposed approach