Browse Source

DevStack: Bump SG quotas for "policy" SG driver

Looks like we only bump SG quotas when running with "namespace" SG
driver. This commit adds the same behavior for "policy" driver.

Change-Id: Id257bd0a1b5dfe847eb9769568b4e9cdbece0906
Closes-Bug: 1820284
Michał Dulko 1 month ago
parent
commit
e8f1f17061
1 changed files with 6 additions and 4 deletions
  1. 6
    4
      devstack/plugin.sh

+ 6
- 4
devstack/plugin.sh View File

@@ -424,15 +424,17 @@ function configure_neutron_defaults {
424 424
             --description "allow imcp traffic from everywhere to default namespace" \
425 425
             --ethertype IPv4 --protocol icmp "$allow_namespace_sg_id"
426 426
 
427
+        iniset "$KURYR_CONFIG" namespace_sg sg_allow_from_namespaces "$allow_namespace_sg_id"
428
+        iniset "$KURYR_CONFIG" namespace_sg sg_allow_from_default "$allow_default_sg_id"
429
+    fi
430
+
431
+    if [[ "$KURYR_SG_DRIVER" == "namespace" || "$KURYR_SG_DRIVER" == "policy" ]]; then
427 432
         # NOTE(ltomasbo): As more security groups and rules are created, there
428 433
         # is a need to increase the quota for it
429 434
          openstack --os-cloud devstack-admin --os-region "$REGION_NAME" \
430 435
              quota set --secgroups 100 --secgroup-rules 100 "$project_id"
431
-
432
-
433
-        iniset "$KURYR_CONFIG" namespace_sg sg_allow_from_namespaces "$allow_namespace_sg_id"
434
-        iniset "$KURYR_CONFIG" namespace_sg sg_allow_from_default "$allow_default_sg_id"
435 436
     fi
437
+
436 438
     if [ -n "$OVS_BRIDGE" ]; then
437 439
         iniset "$KURYR_CONFIG" neutron_defaults ovs_bridge "$OVS_BRIDGE"
438 440
     fi

Loading…
Cancel
Save