openstack-helm/neutron/values_overrides/ovn.yaml

60 lines
1.8 KiB
YAML

---
network:
backend:
- openvswitch
- ovn
conf:
neutron:
DEFAULT:
router_distributed: True
service_plugins: ovn-router
l3_ha_network_type: geneve
plugins:
ml2_conf:
ml2:
extension_drivers: port_security
mechanism_drivers: ovn
type_drivers: flat,vxlan,geneve
tenant_network_types: geneve
overlay_ip_version: 4
ml2_type_geneve:
vni_ranges: 1:65536
max_header_size: 38
securitygroup:
enable_security_group: True
firewall_driver: neutron.agent.linux.iptables_firewall.OVSHybridIptablesFirewallDriver
ovn:
ovn_nb_connection: tcp:__OVN_NB_DB_SERVICE_HOST__:__OVN_NB_DB_SERVICE_PORT__
ovn_sb_connection: tcp:__OVN_SB_DB_SERVICE_HOST__:__OVN_SB_DB_SERVICE_PORT__
enable_distributed_floating_ip: True
ovn_metadata_enabled: True
ovn_l3_scheduler: leastloaded
dns_servers: 8.8.8.8,1.1.1.1
ovn_metadata_agent:
DEFAULT:
# we cannot change the proxy socket path as it is declared
# as a hostPath volume from agent daemonsets
metadata_proxy_socket: /var/lib/neutron/openstack-helm/metadata_proxy
metadata_proxy_shared_secret: "password"
metadata_workers: 2
nova_metadata_host: __NOVA_METADATA_SERVICE_HOST__
cache:
enabled: true
backend: dogpile.cache.memcached
ovs:
ovsdb_connection: tcp:127.0.0.1:6640
ovsdb_timeout: 180
ovn:
ovn_metadata_enabled: True
ovn_nb_connection: tcp:__OVN_NB_DB_SERVICE_HOST__:__OVN_NB_DB_SERVICE_PORT__
ovn_sb_connection: tcp:__OVN_SB_DB_SERVICE_HOST__:__OVN_SB_DB_SERVICE_PORT__
manifests:
daemonset_dhcp_agent: false
daemonset_l3_agent: false
daemonset_metadata_agent: false
daemonset_ovs_agent: false
daemonset_ovn_metadata_agent: true