[VPNaas-DVR]The Traffic is unreachable after the virtual machine is bound to the floating IP
Bug #1874392 reported by
yuanshuo
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
neutron |
New
|
Undecided
|
Unassigned |
Bug Description
Create virtual machines under different VPCs and configure corresponding VPN services. When the vpn connection is active, virtual machines under different VPCs can communicate through the ipsec tunnel.
However, after the virtual machine is bound to the floating ip, the traffic to the external network does not pass through the snat namespace, and therefore cannot be forwarded through the ipsec tunnel, so the traffic is unreachable.
@yuanshuo, hi, thank you for raise the problem here. Please see the https:/ /bugs.launchpad .net/neutron/ +bug/1717266 for detail.
Currently this is a expected behavior as the vpn service is running in snat namespace, not in qrouter.
If we want to support this, we may need patch some code to implement this.