Comment 3 for bug 1945215

Revision history for this message
Rodolfo Alonso (rodolfo-alonso-hernandez) wrote :

Hi Slawek:

What is missing in this router is the external GW port. Both networks, the public and the private, have connectivity through the router. But the public network does not have external connectivity because the GW port has not been assigned.

Because of that, the GW port has not been created in the SNAT namespace and the SNAT iptables manager has not been initialized yet.

The customer hit this problem only once, when restarting the controllers. All the three controllers (DVR, non-HA) had the same problem around this time. This problem never happened again. Although I still don't know 100% how this happened, I'll prevent this issue (as done before [1]) preventing any SNAT iptables use if the manager is not initialized.

Regards.

[1]https://review.opendev.org/c/openstack/neutron/+/296394