Comment 1 for bug 2020060

Revision history for this message
Rodolfo Alonso (rodolfo-alonso-hernandez) wrote :

Hello Path:

I guess you are using ML2 Linux Bridge (with the iptables firewall). Please, provide the version of OpenStack used. If possible, provide a full dump of iptables, the ports used and the SG and rules description. The iptables version could be useful too.

If I'm not wrong, the problem here is that Line 34 and Line 53 are clashing. The first one is tracking the interface traffic in zone 4099 and the second one is marking this traffic a "no tracking". I guess this is a corner case not covered during the development nor the testing.

Let me remark that ML2/LB is in experimental support mode. That means it is no longer actively supported by the Neutron community. You could study moving to other mechanism drivers like ML2/OVS or ML2/OVN.

Regards.