allowed_address_pair validation should be done to exclude the port IP
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
Juniper Openstack |
Fix Committed
|
High
|
Prakash Bailkeri |
Bug Description
Build 1.10 2282
Per openstack documentation :
"Setting an allowed-
But Contrail allows such a config :
root@nodec22:
t=true ip_address=
Updated port: 13c5ca47-
root@nodec22:
root@nodec22:
+------
| Field | Value |
+------
| admin_state_up | True |
| allowed_
| device_id | edd9acff-
| device_owner | |
| fixed_ips | {"subnet_id": "26b80e71-
| id | 13c5ca47-
| mac_address | 02:13:c5:ca:47:ff |
| name | 13c5ca47-
| network_id | ddc414fc-
| security_groups | 42c9a8c6-
| status | ACTIVE |
| tenant_id | 3aa6fd0a73b749f
+------
On a stock openstack with openvswitch:
root@nodec43:
400-{u'
root@nodec43:
https:/ /github. com/Juniper/ contrail- controller/ commit/ 94565d28cbba9df e33bdd6654bcab7 eb1105c4a3