Extend the OVN plugins to support remote_address_group_id for security group rules

Bug #2036709 reported by Reason li
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
neutron
New
Wishlist
Reason li

Bug Description

neutron provides address groups that can be used by security group rules.

OVN has the address set list, which is used to store ip address sets for ACL use.

In ovn scenarios, security group rules are implemented through ACLs.

You can map the address group in neutron to the address set in ovn. In ovn scenarios, the remote_addresss_group parameter is supported by security group rules.

Tags: ovn
tags: added: ovn
Changed in neutron:
importance: Undecided → Wishlist
Reason li (lireason)
Changed in neutron:
assignee: nobody → Reason li (lireason)
Revision history for this message
Liu Xie (liushy) wrote :

hi Reason, i had post one patch might meet your demands:
https://review.opendev.org/c/openstack/neutron/+/851509

Please feel free to review it and post your comments!

To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.