How about if we still want to enable security group but with firewall_driver = neutron.agent.firewall.NoopFirewallDriver on each neutron ovs agent node, and we want avoid ovs_hybrid ?
In this way, we keep "fake" security group function running for back-compatibility support for existing Heat templates, and we get rid of ovs_hybrid.
How about if we still want to enable security group but with firewall_driver = neutron. agent.firewall. NoopFirewallDri ver on each neutron ovs agent node, and we want avoid ovs_hybrid ?
In this way, we keep "fake" security group function running for back-compatibility support for existing Heat templates, and we get rid of ovs_hybrid.