Skip to content

Commit a4b3d61

Browse files
Zuulopenstack-gerrit
authored andcommitted
Merge "Fix POD to POD networking with ML2/OVN"
2 parents 164ce57 + 76e5006 commit a4b3d61

File tree

1 file changed

+19
-0
lines changed

1 file changed

+19
-0
lines changed

magnum/drivers/k8s_fedora_coreos_v1/templates/kubecluster.yaml

Lines changed: 19 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1131,6 +1131,25 @@ resources:
11311131
port_range_max: 65535
11321132
security_group: {get_resource: secgroup_kube_minion}
11331133
remote_group: {get_resource: secgroup_kube_minion}
1134+
# allow traffic between PODs for ML2/OVN
1135+
secgroup_rule_tcp_kube_minion_pods_cidr:
1136+
condition: create_cluster_resources
1137+
type: OS::Neutron::SecurityGroupRule
1138+
properties:
1139+
protocol: tcp
1140+
port_range_min: 1
1141+
port_range_max: 65535
1142+
remote_ip_prefix: {get_param: pods_network_cidr}
1143+
security_group: {get_resource: secgroup_kube_minion}
1144+
secgroup_rule_udp_kube_minion_pods_cidr:
1145+
condition: create_cluster_resources
1146+
type: OS::Neutron::SecurityGroupRule
1147+
properties:
1148+
protocol: udp
1149+
port_range_min: 1
1150+
port_range_max: 65535
1151+
remote_ip_prefix: {get_param: pods_network_cidr}
1152+
security_group: {get_resource: secgroup_kube_minion}
11341153

11351154
######################################################################
11361155
#

0 commit comments

Comments
 (0)