On Wed, Nov 24, 2021 at 11:33 AM Toms Atteka wrote:
>
> This change adds a new OpenFlow field OFPXMT_OFB_IPV6_EXTHDR and
> packets can be filtered using ipv6_ext flag.
>
> Signed-off-by: Toms Atteka
> ---
> include/uapi/linux/openvswitch.h | 6 ++
> net/openvswitch/flow.c | 140
When performing CT_LB action in ovn-trace, take into account current
connection tracking state provided by the user.
Related bz: https://bugzilla.redhat.com/show_bug.cgi?id=1980702
Fixes: 8accd26cb2 ("OVN: add CT_LB action to ovn-trace")
Signed-off-by: Lorenzo Bianconi
---
tests/ovn-northd.at
On Wed, Dec 1, 2021 at 10:48 AM Dumitru Ceara wrote:
>
> Specifically the following commits are relevant and significantly
> improve performance of OVN components:
>
> 91e1ff5dd ovsdb-idl: Don't reparse orphaned rows.
> 79953a57e stream-ssl: Avoid unnecessary memory copies on send.
>
On 12/1/21 20:02, Paul Blakey wrote:
>
>
> On Mon, 29 Nov 2021, Ilya Maximets wrote:
>
>> On 11/7/21 13:12, Roi Dayan via dev wrote:
>>> From: Paul Blakey
>>>
>>> Fragmented packets with offset=0 are defragmented by tc act_ct, and
>>> only when assembled pass to next action, in ovs offload
From: Zhou Nan
When we set ipv6 addr, we need to recalculate checksum of L4 header.
In our testcase, after send ipv6 fragment package, KASAN detect "use after
free" when calling function update_ipv6_checksum, and crash occurred after a
while.
If ipv6 package is fragment, and it is not first
On Mon, 29 Nov 2021, Ilya Maximets wrote:
> On 11/7/21 13:12, Roi Dayan via dev wrote:
> > From: Paul Blakey
> >
> > Fragmented packets with offset=0 are defragmented by tc act_ct, and
> > only when assembled pass to next action, in ovs offload case,
> > a goto action. Since stats are
On Mon, 29 Nov 2021, Ilya Maximets wrote:
> On 11/7/21 13:12, Roi Dayan via dev wrote:
> > From: Paul Blakey
> >
> > Fragmented packets with offset=0 are defragmented by tc act_ct, and
> > only when assembled pass to next action, in ovs offload case,
> > a goto action. Since stats are
Add support for monitor_cond_since / update3 to python-ovs to
allow more efficient reconnections when connecting to clustered
OVSDB servers.
Signed-off-by: Terry Wilson
---
python/ovs/db/idl.py | 245 ---
tests/ovsdb-idl.at | 2 +-
2 files changed,
Bleep bloop. Greetings Terry Wilson, I am a robot and I have tried out your
patch.
Thanks for your contribution.
I encountered some error that I wasn't expecting. See the details below.
git-am:
error: Failed to merge in the changes.
hint: Use 'git am --show-current-patch' to see the failed
On 12/1/21 17:55, Terry Wilson wrote:
> On Fri, Nov 26, 2021 at 5:38 AM Dumitru Ceara wrote:
>> Nit: To be consistent with the other ifs below we should probably add
>> this comment:
>>
>> # Database contents changed.
>
> Will do.
>
Thanks.
>>> +# If 'found' is false,
Add support for monitor_cond_since / update3 to python-ovs to
allow more efficient reconnections when connecting to clustered
OVSDB servers.
Signed-off-by: Terry Wilson
---
python/ovs/db/idl.py | 245 ---
tests/ovsdb-idl.at | 2 +-
2 files changed,
On Fri, Nov 26, 2021 at 5:38 AM Dumitru Ceara wrote:
> Nit: To be consistent with the other ifs below we should probably add
> this comment:
>
> # Database contents changed.
Will do.
> > +# If 'found' is false, clear table rows for new
> > dump
> > +
On Thu, Nov 25, 2021 at 12:05 PM Lorenzo Bianconi
wrote:
>
> At the moment ovs meters are reconfigured by ovn just when a
> new a meter is allocated while updates for an already allocated meter are
> ignored. This issue can be easily verified with the following reproducer:
>
> $ovn-nbctl
Specifically the following commits are relevant and significantly
improve performance of OVN components:
91e1ff5dd ovsdb-idl: Don't reparse orphaned rows.
79953a57e stream-ssl: Avoid unnecessary memory copies on send.
dec429168 ovsdb-data: Consolidate ovsdb atom and json strings.
Bleep bloop. Greetings Kumar Amber, I am a robot and I have tried out your
patch.
Thanks for your contribution.
I encountered some error that I wasn't expecting. See the details below.
git-am:
error: Failed to merge in the changes.
hint: Use 'git am --show-current-patch' to see the failed
On Sat, Nov 27, 2021, at 00:12, Paolo Valerio wrote:
> v3:
> - added _S suffix to NEIGH_ENTRY_MAX_AGING_TIME (patch #2)
> - Added Reported-at tag (patch #4)
>
> v2:
> - rebased against master
> - turned 'ageing' -> 'aging'
> - further details of v1 -> v2 respin has been added
> to each patch
>
>
AVX512 DPIF must be active in order for the MFEX AutoValidator to be executed.
If the DPIF-AVX512 is not available, the unit test is skipped, as the
scalar DPIF does not use the MFEX function-pointer based optimizations.
This patch depends on the following patch-set:
On Tue, Nov 30, 2021, at 17:20, Mike Pattrick wrote:
> Recently there has been a lot of press about the "trojan source" attack,
> where Unicode characters are used to obfuscate the true functionality of
> code. This attack didn't effect OVS, but adding the check here will help
> guard against it
Hi David,
Please find my replies inline.
> -Original Message-
> From: David Marchand
> Sent: Tuesday, November 30, 2021 8:30 PM
> To: d...@openvswitch.org
> Cc: i.maxim...@ovn.org; Stokes, Ian ;
> tredae...@redhat.com; Amber, Kumar ;
> f...@sysclose.org; echau...@redhat.com;
On 29 Nov 2021, at 22:02, Aaron Conole wrote:
> This reverts commit c645550bb249 ("odp-util: Always report
> ODP_FIT_TOO_LITTLE for IGMP.")
>
> Always forcing a slow path action can result in some over-broad
> flows which swallow all traffic and force them to userspace, as reported
> in the
Hi David,
Please find the Replies inline.
> -Original Message-
> From: David Marchand
> Sent: Wednesday, December 1, 2021 6:24 PM
> To: Amber, Kumar
> Cc: d...@openvswitch.org; i.maxim...@ovn.org; Stokes, Ian
> ; tredae...@redhat.com; f...@sysclose.org;
> echau...@redhat.com;
Signed-off-by: Vladislav Odintsov
Regards,
Vladislav Odintsov
> On 1 Dec 2021, at 16:00, 0-day Robot wrote:
>
> Bleep bloop. Greetings Vladislav Odintsov, I am a robot and I have tried out
> your patch.
> Thanks for your contribution.
>
> I encountered some error that I wasn't expecting.
Bleep bloop. Greetings Vladislav Odintsov, I am a robot and I have tried out
your patch.
Thanks for your contribution.
I encountered some error that I wasn't expecting. See the details below.
checkpatch:
ERROR: Author Vladislav Odintsov needs to sign off.
Lines checked: 207, Warnings: 0,
It was unsupported - to have a mix of stateless ACLs with lower than
stateful priority at the same time with stateful (related) ACLs.
This patch changes stateless ACLs behaviour, but this change should not
be harmful for users. Likely nobody mixed rules in the described manner,
so this change
This reverts commit 62ca8b9620cc1168ace6905575b7d36438363aed.
---
northd/northd.c | 14 --
northd/ovn-northd.8.xml | 28
northd/ovn_northd.dl| 33 ++---
tests/ovn-northd.at | 2 --
4 files changed, 2
Recently the patch [1] fixed the ingress pipeline for packets coming
from HW VTEP switch within a stateful datapath.
This patch assumes the [1] is reverted and applies more efficient
"next(pipeline=ingress, table=S_SWITCH_IN_L2_LKUP);" action to
skip unneeded stages for such packets.
1:
Currently if user has a stateless and statetul ACLs (allow-stateless and
allow-related) in one port group or in one logical switch simultaneously,
the stateless rules whould take precedence.
This patch series adds support for mixing all the ACLs types with the
respect to their priority.
This
Hello Kumar,
Thanks for looking at this series.
On Wed, Dec 1, 2021 at 1:34 PM Amber, Kumar wrote:
> > diff --git a/tests/dpif-netdev.at b/tests/dpif-netdev.at index
> > 53eee185ad..fbb8fe9a71 100644
> > --- a/tests/dpif-netdev.at
> > +++ b/tests/dpif-netdev.at
> > @@ -635,3 +635,170 @@
Hi David,
Thanks a lot for the patch it really does improve the testing .
Please find one comment below.
> -Original Message-
> From: David Marchand
> Sent: Tuesday, November 30, 2021 8:30 PM
> To: d...@openvswitch.org
> Cc: i.maxim...@ovn.org; Stokes, Ian ;
> tredae...@redhat.com;
On 30 Nov 2021, at 16:00, David Marchand wrote:
> The MFEX code and tests do not depend on DPDK anymore.
> We can move the unit tests to dpif-netdev.
>
> Signed-off-by: David Marchand
> ---
> Note: this patch depends on series
>
On 30 Nov 2021, at 16:00, David Marchand wrote:
> The DPDK unit test only runs if vfio or igb_uio kernel module is loaded:
> on systems with only mlx5, this test is always skipped.
>
> Besides, the test tries to grab the first device listed by dpdk-devbind.py,
> regardless of the PCI device
On 30 Nov 2021, at 16:00, David Marchand wrote:
> net_pcap is not always available in DPDK (like, in a dev
> environment when you forgot to install the libpcap-devel).
> On the other hand, OVS already has its own way to inject packets into a
> bridge. Let's make use of it.
>
> This solution is
On 30 Nov 2021, at 16:00, David Marchand wrote:
> Move EAL logs and commonly ignored logs to a common macro.
> Remove obsolete ones (like i40e [1] and timer [2] logs).
> Set log level for DPDK drivers to error only: the rationale is that we are
> not testing DPDK drivers in system-dpdk.
>
On 11/30/21 16:00, David Marchand wrote:
The MFEX code and tests do not depend on DPDK anymore.
We can move the unit tests to dpif-netdev.
Signed-off-by: David Marchand
---
Note: this patch depends on series
https://patchwork.ozlabs.org/project/openvswitch/list/?series=274452
---
On 11/30/21 16:00, David Marchand wrote:
The DPDK unit test only runs if vfio or igb_uio kernel module is loaded:
s/module is loaded/modules are loaded/ ?
on systems with only mlx5, this test is always skipped.
Besides, the test tries to grab the first device listed by dpdk-devbind.py,
On 11/30/21 16:00, David Marchand wrote:
net_pcap is not always available in DPDK (like, in a dev
environment when you forgot to install the libpcap-devel).
On the other hand, OVS already has its own way to inject packets into a
bridge. Let's make use of it.
This solution is slower than
36 matches
Mail list logo