Merge "Don't add conntrack entries for vxlan" into stable/train
This commit is contained in:
commit
4ef8cc7746
|
@ -220,6 +220,23 @@ outputs:
|
|||
description: Role data for Neutron openvswitch service
|
||||
value:
|
||||
service_name: neutron_ovs_agent
|
||||
firewall_rules:
|
||||
'120 neutron vxlan networks no conntrack':
|
||||
proto: 'udp'
|
||||
dport: 4789
|
||||
table: 'raw'
|
||||
chain: 'OUTPUT'
|
||||
jump: 'NOTRACK'
|
||||
action: 'append'
|
||||
state: []
|
||||
'121 neutron vxlan networks no conntrack':
|
||||
proto: 'udp'
|
||||
dport: 4789
|
||||
table: 'raw'
|
||||
chain: 'PREROUTING'
|
||||
jump: 'NOTRACK'
|
||||
action: 'append'
|
||||
state: []
|
||||
monitoring_subscription: {get_param: MonitoringSubscriptionNeutronOvs}
|
||||
config_settings:
|
||||
map_merge:
|
||||
|
|
Loading…
Reference in New Issue