neutron/neutron/common
Swaminathan Vasudevan 1dd35515d4 Packets getting lost during SNAT with too many connections
We have a problem with SNAT with too many connections using the
same source and destination on the network nodes.

In addition we can see in the conntrack table that the who
"instert_failed" increases.

This might be a generic problem with conntrack and linux.
We suspect that we encounter the following "limitation / bug"
in the kernel.

There seems to be a workaround to alleviate this behavior by
setting the -random-fully flag in iptables for port consumption.

This patch fixes the problem by adding the --random-fully to
the SNAT rules.

Conflicts:
    neutron/agent/linux/iptables_manager.py
    neutron/common/constants.py
    neutron/tests/unit/agent/l3/test_agent.py

Change-Id: I246c1f56df889bad9c7e140b56c3614124d80a19
Closes-Bug: #1814002
(cherry picked from commit 30f35e08f9)
2019-06-04 23:23:07 +00:00
..
__init__.py Update License Headers to replace Nicira with VMware 2014-02-27 08:11:15 +00:00
_deprecate.py Replace assert to raise AssertionError 2018-04-10 16:01:48 +04:00
cache_utils.py Remove deprecated cache_url 2017-11-10 00:47:19 -05:00
config.py Allow neutron-api load config from WSGI process 2018-07-25 15:22:14 +07:00
constants.py Packets getting lost during SNAT with too many connections 2019-06-04 23:23:07 +00:00
eventlet_utils.py Windows: fix exec calls 2018-02-01 17:05:28 +02:00
exceptions.py Fix neutron-openvswitch-agent Windows support 2018-08-28 06:53:11 +00:00
ipv6_utils.py Allow Ipv6 addresses for nova_metadata_host 2018-10-13 07:14:05 +00:00
profiler.py Make code follow log translation guideline 2017-08-14 02:01:48 +00:00
rpc.py remove rpc create_connection 2018-04-27 09:51:11 -06:00
test_lib.py Revert "Removed test_lib module" 2015-06-29 08:27:41 +00:00
utils.py Packets getting lost during SNAT with too many connections 2019-06-04 23:23:07 +00:00