apache / apache/cloudstack

CS 4.20.1 Unable to run Management and secondary Storage on VXLAN - System AutoConfigures ON VLAN Untagged: the VXLAN Management and SecondaryStorage Forced to run on VLAN://untagged

未关闭
#11,983 11 条评论 0 个 reaction 已指派 0 人 在 GitHub 查看
component:networking component:vxlan type:new-feature
主要语言
Java
星标
3.1k
派生
1.4k
平均合并
6 天 19 小时
30 天内合并 PR
32

描述

### problem

We did some manual, routing corrections as a work around but want to know if this is a Bug.
!
I have the management on a vxlan, but when creating the Zone the system adds the IPs to a VLAN://untagged. that VLAN is for public.
!
There is no way for me to move them to VXLAN the Management:
!
!
!
The Management Interface was created during the Installation: But was loaded to a vlan://untagged - I do not have how as I specifically set for vxlan on cloudbr1
!

Image
!
!
!
The Zone Has VXLANs for Primary storage, Management, and Guest.
!

Image
!
!
Image
!
!
!
Any Attemp to change the VLAN to VXLAN results on an error:
!

Image
!
!
! Additionally The Secondary Storage is affected by this routing.
!
!
Is the Storage Traffic type solely for Primary storage ? I will like to have the secondary storage on a separate routed or L2/Vlan tagged
Our primary Storage is CEPH running on VXLAN and have no problems at all - Primary storage and Guest VXLAN are the only thing working as it should per the documentation.
!
!

Image

### versions

CS 4.20.1
PRI STORAGE: CEPH
SEC STORAGE: NFS EMC
VXLAN
Forced VLAN for Public - but System auto-configures the Management on vlan://untagged which also uses Secondary Storage.

### The steps to reproduce the bug

1. Create a new Zone, all new systems.
2. put on vxlan management, secondary-storage and guest on cloudbr1
3. pod settings: Assign the IP range for management - there is nowhere to add a VXLAN ports for Management during the initial setup/configuration
4. System VM proxy have to be routed manually, same as Secondary storage.

Not possible to set secondary storage using routing without VRFs, as systemVM automatically try to push it over VLAN://untagged being forced to manually route over vlan://untagged...

As a workaround we route sec Storage and Management over vlan://untagged

### What to do about it?

The management should use the vxlan://assigend, and secondary storage should be able to have its own route if needed.
The UI configures the Storage for the primary Storage only.

贡献指南

打开贡献指南

调研方向

首先,在 cloudbr1 上复现使用 management、secondary-storage 和 guest VXLAN 创建新 Zone,然后跟踪 pod 设置和 System VM 代理网络设置。验证当强制 public traffic 使用 VLAN://untagged 时,management 和 secondary-storage 流量类型是如何分配的。完成标准是 management 使用已分配的 VXLAN,并且 secondary storage 可以在无需手动路由的情况下使用自己的路由网络或带标签网络。

由索引模型根据 Issue 内容生成。

评估

技术栈
java
领域
infrastructure, networking
Issue 类型
缺陷
难度
4/5
预计耗时
3-5 天
活跃度
冷清
描述清晰度
基本清楚
新手友好度
42/100

把新 issue 发到你的邮箱

精选适合新手参与的 GitHub issue 摘要。