Comment 8 for bug 1728886

Revision history for this message
Maciej Jozefczyk (maciejjozefczyk) wrote :

Hey Martin,

from tempest side there is nothing that needs to be done.

The root cause has been fixed in Core OVN. With this fix the ARP responder flows are not installed on LS pipeline, when LSP has port security disabled, and
an 'unknown' address is set in addresses column. This makes MAC spoofing possible.

Because of it now we can revert [2]. I already proposed it here [3].

[1] https://patchwork.ozlabs.org/patch/1258152/
[2] https://review.opendev.org/#/c/702249/
[3] https://review.opendev.org/#/c/708852/